Database/Control plane, storage & DevOps
Grafana: alert rules API returns rules from folders the user cannot read
Impact
Grafana is the observability front end for most GPU fleets, carrying DCGM metrics, fabric counters and capacity dashboards, and is commonly multi-tenant with folder permissions as the tenancy boundary. An authenticated user can list alert rules in folders they are not allowed to read; when the user's readable-folder set was empty the restriction was dropped entirely and every alert rule in the organization was returned. From Grafana 13.1.0 any user can trigger this with a folder filter. What leaks is rule configuration - thresholds, queries, label selectors and therefore the shape of the cluster and its tenants - not data source credentials. Treat it as a tenancy-boundary leak in the monitoring plane rather than a route to the GPU nodes themselves.
Who can reach it
Any authenticated Grafana user in the organization, over the network, via the alert rules API list endpoint. Authentication is required; no special role is needed, and from 13.1.0 a folder filter is enough.
What to do
Upgrade Grafana OSS or Enterprise to the fixed release named in the vendor advisory for CVE-2026-13719 and restart the Grafana service - a short control-plane restart, no node impact. If you cannot upgrade immediately, assume alert rule configuration is visible to every authenticated user and remove anything sensitive (hostnames, tenant identifiers, internal URLs) from rule definitions and annotations.
References
Related entries
- GitLab EE: developer-role user can influence the execution environment of Pipeline Execution Policy jobsCVE-2026-15387 · GitLab EE (Pipeline Execution Policy enforcement jobs, job dependency handling)Medium
- GitLab EE: Security Manager role can run arbitrary CI/CD jobs and read protected variablesCVE-2026-16794 · GitLab EE (compliance framework management authorization)Medium
- GitLab EE: authenticated user can view restricted group configuration settingsCVE-2026-18244 · GitLab EE (group settings page authorization)Medium
- GitLab EE: GraphQL query exposes policy configuration from an unauthorized namespaceCVE-2026-18433 · GitLab EE (GraphQL query for namespace policy configuration)Medium
- NetApp ONTAP S3 NAS bucket directory listing: An authenticated S3 user lists the contents of directories they have noCVE-2026-22052 · NetApp ONTAP S3 NAS bucket directory listingMedium
- GitLab EE: developer-role user can read external status check configuration for a merge requestCVE-2026-4879 · GitLab EE (merge request external status check API)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.