ZeroHour

CVE-2026-33381

CVSS 3.1
8.1 high
EPSS
<1%p26
Published
()
Modified
Description

When a user's access to mint tokens for a service account is revoked, it is sometimes still possible to do so for a few seconds after the event. The user will eventually lose access to do this.

Vendors
grafana
Products
grafana
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.