Loki Grafana Labs Loki

Do you want an email whenever new security vulnerabilities are reported in Grafana Labs Loki?

By the Year

In 2024 there have been 0 vulnerabilities in Grafana Labs Loki . Loki did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 1 5.30
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Loki vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Grafana Labs Loki Security Vulnerabilities

An issue was discovered in Grafana Loki through 2.2.1

CVE-2021-36156 5.3 - Medium - August 03, 2021

An issue was discovered in Grafana Loki through 2.2.1. The header value X-Scope-OrgID is used to construct file paths for rules files, and if crafted to conduct directory traversal such as ae ../../sensitive/path/in/deployment pathname, then Loki will attempt to parse a rules file at that location and include some of the contents in the error message.

Directory traversal

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Grafana Labs Loki or by Grafana Labs? Click the Watch button to subscribe.

subscribe