[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-21721":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-06T02:55:33.997Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":42,"related":43,"reserved_at":9,"published_at":50,"modified_at":51,"state":52,"summary":53,"references_raw":62,"kevs":73,"epss":74,"epss_history":77,"metrics":344,"affected":352},"CVE-2026-21721","The dashboard permissions API does not verify the target dashboard scope and only checks the dashboards.permissions:* action. As a result, a user who has permission management rights on one dashboard can read and modify permissions on other dashboards. This is an organization‑internal privilege escalation.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-863","Incorrect Authorization","The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.","weakness","Incomplete","Class","High",[],[],[],[],[24,26,28,30,32,34,36,38,40],{"_key":25},"UBUNTU-CVE-2026-21721",{"_key":27},"SUSE-SU-2026:1037-1",{"_key":29},"SUSE-SU-2026:1013-1",{"_key":31},"RHSA-2026:3078",{"_key":33},"RHSA-2026:3529",{"_key":35},"SUSE-SU-2026:1524-1",{"_key":37},"OPENSUSE-SU-2026:10601-1",{"_key":39},"RHSA-2026:2914",{"_key":41},"RHSA-2026:2920",[],[44,45,46,47,48],{"_key":27},{"_key":29},{"_key":35},{"_key":37},{"_key":49},"CGA-GPV2-2M7J-7629","2026-01-27T09:07:55.160Z","2026-05-13T19:28:43.691Z","Analyzed",{"cisa_kev":54,"cisa_ransomware":54,"cisa_vendor":9,"epss_severity":55,"epss_score":56,"severity":57,"severity_score":58,"severity_version":59,"severity_source":60,"severity_vector":61,"severity_status":52},false,"low",0.00019,"high",8.1,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",[63,69],{"url":64,"sources":65,"tags":67},"https://grafana.com/security/security-advisories/CVE-2026-21721",[60,66],"nvd",[68],"Vendor Advisory",{"url":70,"sources":71,"tags":72},"https://grafana.com/security/security-advisories/cve-2026-21721",[60,66],[68],[],{"date":75,"score":56,"percentile":76},"2026-06-05",0.05219,[78,82,85,88,91,94,97,101,104,107,110,113,116,119,122,125,128,131,134,137,140,143,146,150,152,155,158,160,163,166,169,172,175,179,182,185,188,191,194,197,200,202,205,208,211,214,217,220,223,226,229,232,235,238,241,244,247,250,253,255,258,261,263,266,268,271,273,275,278,282,285,287,290,293,296,298,301,304,307,310,313,316,319,322,325,329,332,335,338,341],{"date":79,"score":80,"percentile":81},"2026-01-27",0.00025,0.06201,{"date":83,"score":80,"percentile":84},"2026-01-28",0.06175,{"date":86,"score":80,"percentile":87},"2026-01-29",0.0618,{"date":89,"score":80,"percentile":90},"2026-01-30",0.06183,{"date":92,"score":80,"percentile":93},"2026-01-31",0.06168,{"date":95,"score":80,"percentile":96},"2026-02-01",0.06206,{"date":98,"score":99,"percentile":100},"2026-02-02",0.00028,0.07371,{"date":102,"score":99,"percentile":103},"2026-02-03",0.07335,{"date":105,"score":99,"percentile":106},"2026-02-04",0.07351,{"date":108,"score":99,"percentile":109},"2026-02-05",0.07402,{"date":111,"score":99,"percentile":112},"2026-02-06",0.07433,{"date":114,"score":99,"percentile":115},"2026-02-07",0.07449,{"date":117,"score":99,"percentile":118},"2026-02-08",0.07444,{"date":120,"score":99,"percentile":121},"2026-02-09",0.07398,{"date":123,"score":99,"percentile":124},"2026-02-10",0.0738,{"date":126,"score":99,"percentile":127},"2026-02-11",0.07416,{"date":129,"score":99,"percentile":130},"2026-02-12",0.07453,{"date":132,"score":99,"percentile":133},"2026-02-13",0.07377,{"date":135,"score":99,"percentile":136},"2026-02-14",0.07369,{"date":138,"score":99,"percentile":139},"2026-02-15",0.07386,{"date":141,"score":99,"percentile":142},"2026-02-16",0.07372,{"date":144,"score":99,"percentile":145},"2026-02-17",0.07337,{"date":147,"score":148,"percentile":149},"2026-02-18",0.0001,0.01159,{"date":151,"score":148,"percentile":149},"2026-02-19",{"date":153,"score":148,"percentile":154},"2026-02-20",0.01165,{"date":156,"score":148,"percentile":157},"2026-02-21",0.01161,{"date":159,"score":148,"percentile":157},"2026-02-22",{"date":161,"score":148,"percentile":162},"2026-02-23",0.01127,{"date":164,"score":148,"percentile":165},"2026-02-24",0.01106,{"date":167,"score":148,"percentile":168},"2026-02-25",0.01103,{"date":170,"score":148,"percentile":171},"2026-02-26",0.01091,{"date":173,"score":148,"percentile":174},"2026-02-27",0.00935,{"date":176,"score":177,"percentile":178},"2026-02-28",0.00011,0.01282,{"date":180,"score":177,"percentile":181},"2026-03-01",0.01288,{"date":183,"score":177,"percentile":184},"2026-03-02",0.01306,{"date":186,"score":177,"percentile":187},"2026-03-03",0.01331,{"date":189,"score":177,"percentile":190},"2026-03-04",0.01318,{"date":192,"score":177,"percentile":193},"2026-03-05",0.01347,{"date":195,"score":177,"percentile":196},"2026-03-06",0.01355,{"date":198,"score":177,"percentile":199},"2026-03-07",0.01348,{"date":201,"score":177,"percentile":199},"2026-03-08",{"date":203,"score":177,"percentile":204},"2026-03-09",0.01345,{"date":206,"score":177,"percentile":207},"2026-03-10",0.01342,{"date":209,"score":177,"percentile":210},"2026-03-11",0.01299,{"date":212,"score":177,"percentile":213},"2026-03-12",0.01307,{"date":215,"score":177,"percentile":216},"2026-03-13",0.01303,{"date":218,"score":177,"percentile":219},"2026-03-14",0.01268,{"date":221,"score":177,"percentile":222},"2026-03-15",0.01259,{"date":224,"score":177,"percentile":225},"2026-03-16",0.01251,{"date":227,"score":177,"percentile":228},"2026-03-17",0.01223,{"date":230,"score":177,"percentile":231},"2026-03-18",0.01222,{"date":233,"score":177,"percentile":234},"2026-03-19",0.01217,{"date":236,"score":177,"percentile":237},"2026-03-20",0.01218,{"date":239,"score":177,"percentile":240},"2026-03-21",0.01323,{"date":242,"score":177,"percentile":243},"2026-03-22",0.01313,{"date":245,"score":177,"percentile":246},"2026-03-23",0.0131,{"date":248,"score":177,"percentile":249},"2026-03-24",0.01305,{"date":251,"score":177,"percentile":252},"2026-03-25",0.01308,{"date":254,"score":177,"percentile":243},"2026-03-26",{"date":256,"score":177,"percentile":257},"2026-03-27",0.01319,{"date":259,"score":177,"percentile":260},"2026-03-28",0.0132,{"date":262,"score":177,"percentile":260},"2026-03-29",{"date":264,"score":177,"percentile":265},"2026-03-30",0.01315,{"date":267,"score":177,"percentile":210},"2026-03-31",{"date":269,"score":177,"percentile":270},"2026-04-01",0.01295,{"date":272,"score":177,"percentile":249},"2026-04-02",{"date":274,"score":177,"percentile":246},"2026-04-03",{"date":276,"score":177,"percentile":277},"2026-04-04",0.01312,{"date":279,"score":280,"percentile":281},"2026-04-05",0.00013,0.01978,{"date":283,"score":280,"percentile":284},"2026-04-06",0.01979,{"date":286,"score":280,"percentile":281},"2026-04-07",{"date":288,"score":280,"percentile":289},"2026-04-08",0.0198,{"date":291,"score":280,"percentile":292},"2026-04-09",0.01995,{"date":294,"score":280,"percentile":295},"2026-04-10",0.01992,{"date":297,"score":280,"percentile":284},"2026-04-11",{"date":299,"score":280,"percentile":300},"2026-04-12",0.01964,{"date":302,"score":280,"percentile":303},"2026-04-13",0.01959,{"date":305,"score":280,"percentile":306},"2026-04-14",0.01936,{"date":308,"score":280,"percentile":309},"2026-04-15",0.01931,{"date":311,"score":280,"percentile":312},"2026-04-16",0.0194,{"date":314,"score":280,"percentile":315},"2026-04-17",0.01946,{"date":317,"score":280,"percentile":318},"2026-04-18",0.01942,{"date":320,"score":280,"percentile":321},"2026-04-19",0.01926,{"date":323,"score":280,"percentile":324},"2026-04-20",0.01915,{"date":326,"score":327,"percentile":328},"2026-04-21",0.00015,0.03159,{"date":330,"score":327,"percentile":331},"2026-04-22",0.03174,{"date":333,"score":327,"percentile":334},"2026-04-23",0.03189,{"date":336,"score":327,"percentile":337},"2026-04-24",0.03162,{"date":339,"score":327,"percentile":340},"2026-04-25",0.03173,{"date":342,"score":327,"percentile":343},"2026-04-26",0.03155,[345,350],{"source":60,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":346,"cvss_v4_0":9},{"baseScore":58,"baseSeverity":347,"vectorString":61,"impactScore":348,"exploitabilityScore":349},"HIGH",8.7,7.2,{"source":66,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":351,"cvss_v4_0":9},{"baseScore":58,"baseSeverity":347,"vectorString":61,"impactScore":348,"exploitabilityScore":349},[353,385,398],{"ecosystem":9,"name":354,"vendor":354,"product":354,"cpe_part":355,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":356},"grafana","a",[357,365,369,373,377,378,379,380,381,383],{"version":358,"is_range":359,"range_type":360,"version_start":361,"version_start_type":362,"version_end":363,"version_end_type":364,"fixed_in":9},"gte10.2.0_lt11.6.9",true,"cpe","10.2.0","including","11.6.9","excluding",{"version":366,"is_range":359,"range_type":360,"version_start":367,"version_start_type":362,"version_end":368,"version_end_type":364,"fixed_in":9},"gte12.0.0_lt12.0.8","12.0.0","12.0.8",{"version":370,"is_range":359,"range_type":360,"version_start":371,"version_start_type":362,"version_end":372,"version_end_type":364,"fixed_in":9},"gte12.1.0_lt12.1.5","12.1.0","12.1.5",{"version":374,"is_range":359,"range_type":360,"version_start":375,"version_start_type":362,"version_end":376,"version_end_type":364,"fixed_in":9},"gte12.2.0_lt12.2.3","12.2.0","12.2.3",{"version":363,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":368,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":372,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":376,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":382,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.3.0",{"version":384,"is_range":54,"range_type":360,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.3.1",{"ecosystem":9,"name":386,"vendor":354,"product":386,"cpe_part":355,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":387},"grafana/grafana",[388,390,392,394,396],{"version":389,"is_range":359,"range_type":60,"version_start":382,"version_start_type":362,"version_end":384,"version_end_type":364,"fixed_in":9},">= 12.3.0, \u003C 12.3.1",{"version":391,"is_range":359,"range_type":60,"version_start":375,"version_start_type":362,"version_end":376,"version_end_type":364,"fixed_in":9},">= 12.2.0, \u003C 12.2.3",{"version":393,"is_range":359,"range_type":60,"version_start":371,"version_start_type":362,"version_end":372,"version_end_type":364,"fixed_in":9},">= 12.1.0, \u003C 12.1.5",{"version":395,"is_range":359,"range_type":60,"version_start":367,"version_start_type":362,"version_end":368,"version_end_type":364,"fixed_in":9},">= 12.0.0, \u003C 12.0.8",{"version":397,"is_range":359,"range_type":60,"version_start":361,"version_start_type":362,"version_end":363,"version_end_type":364,"fixed_in":9},">= 10.2.0, \u003C 11.6.9",{"ecosystem":9,"name":399,"vendor":354,"product":399,"cpe_part":355,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":400},"grafana/grafana-enterprise",[401,402,403,404,405],{"version":397,"is_range":359,"range_type":60,"version_start":361,"version_start_type":362,"version_end":363,"version_end_type":364,"fixed_in":9},{"version":395,"is_range":359,"range_type":60,"version_start":367,"version_start_type":362,"version_end":368,"version_end_type":364,"fixed_in":9},{"version":393,"is_range":359,"range_type":60,"version_start":371,"version_start_type":362,"version_end":372,"version_end_type":364,"fixed_in":9},{"version":391,"is_range":359,"range_type":60,"version_start":375,"version_start_type":362,"version_end":376,"version_end_type":364,"fixed_in":9},{"version":389,"is_range":359,"range_type":60,"version_start":382,"version_start_type":362,"version_end":384,"version_end_type":364,"fixed_in":9}]