This issue affects Grafana: before 11.6.2 and is fixed in 11.6.2 and higher.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18570 | Grafana long dashboard title or panel name causes unresponsives |
Github GHSA |
GHSA-crvv-6w6h-cv34 | Grafana long dashboard title or panel name causes unresponsives |
Fri, 20 Jun 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 18 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 18 Jun 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Grafana, an excessively long dashboard title or panel name will cause Chromium browsers to become unresponsive due to Improper Input Validation vulnerability in Grafana. This issue affects Grafana: before 11.6.2 and is fixed in 11.6.2 and higher. | |
| Title | Very long unicode dashboard title or panel name can hang the frontend | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GRAFANA
Published:
Updated: 2025-11-23T15:34:20.989Z
Reserved: 2025-02-06T16:20:20.820Z
Link: CVE-2025-1088
Updated: 2025-06-18T13:32:31.413Z
Status : Deferred
Published: 2025-06-18T10:15:31.210
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-1088
OpenCVE Enrichment
Updated: 2025-06-20T13:55:53Z
EUVD
Github GHSA