Grafana 6.7.3 through 7.4.1 snapshot functionality can allow an unauthenticated remote attacker to trigger a Denial of Service via a remote API call if a commonly used configuration is set.
id: CVE-2021-27358
info:
name: Grafana Unauthenticated Snapshot Creation
author: pdteam,bing0o
...