The Lab · 2026-03-27 06:27:05 · GitHub Issues
A critical security alert has been raised for the widely used `node-forge` cryptography library, version 1.3.2, which contains four vulnerabilities with a maximum severity score of 7.5 (High). This flawed library is a direct dependency in the `/package.json` of a Grafana project, as confirmed in a recent GitHub commit ...
The Lab · 2026-03-28 02:27:06 · GitHub Issues
A high-severity vulnerability, CVE-2024-12797, has been identified within the official `grafana/grafana-oss:11.5.2` container image. The flaw was detected during a routine security scan using the Trivy tool, raising immediate concerns for teams deploying this specific version of the popular open-source analytics platfo...
The Lab · 2026-04-14 20:23:08 · GitHub Issues
A critical security vulnerability is actively present on the public-facing Torrust Tracker demo server. The server, `grafana.torrust-tracker-demo.com`, is running an outdated Grafana container (`grafana/grafana:12.4.2`) that bundles a vulnerable version of the `go-jose/go-jose/v4` library, exposing the system to CVE-20...