Grafana Gaffe: Severe Vulnerability Makes Admin Privileges a Joke
Grafana Labs has issued an alert about a critical flaw (CVE-2025-41115) in its Enterprise product. This vulnerability can make new users unintended administrators, but only when SCIM provisioning is enabled. Grafana urges users to update to a patched version or disable SCIM to avoid potential exploits.

Hot Take:
Oh, Grafana! You had us at data visualization and monitoring, but now you’ve gone and given us an unexpected plot twist with a vulnerability that turns new users into surprise admin pop-ups. Who knew SCIM provisioning could be the fairy godmother of privilege escalation? Time to patch those slippers, folks, before the clock strikes ‘security breach’!
Key Points:
- Grafana Enterprise vulnerability allows new users to be treated as admins or escalate privileges.
- The issue only arises when SCIM provisioning is enabled and configured.
- The flaw affects Grafana Enterprise versions 12.0.0 to 12.2.1 but not Grafana OSS users.
- Patches are available; Grafana Cloud services have already been updated.
- Users should upgrade or disable SCIM to avoid potential exploitation.
Already a member? Log in here
