CVE-2026-15583
Awaiting Analysis Awaiting Analysis - Queue

Confused-Deputy Flaw in Grafana MCP Server Permits Token Exfiltration

Vulnerability report for CVE-2026-15583, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-15

Last updated on: 2026-07-15

Assigner: Grafana Labs

Description

A confused-deputy flaw in Grafana MCP Server allows an unauthenticated remote attacker to exfiltrate the server's environment-configured Grafana service-account token by supplying a crafted X-Grafana-URL request header. This also enables SSRF against arbitrary internal services, including cloud metadata endpoints.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-15
Last Modified
2026-07-15
Generated
2026-08-04
AI Q&A
2026-07-15
EPSS Evaluated
2026-08-03
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
grafana mcp_server *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-610 The product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a confused-deputy flaw in the Grafana MCP Server. An unauthenticated remote attacker can trick the server into leaking its environment-configured Grafana service-account token by sending a specially crafted X-Grafana-URL request header. This also allows the attacker to perform Server-Side Request Forgery (SSRF) against internal services, including cloud metadata endpoints.

Detection Guidance

To detect this vulnerability, monitor network traffic for unusual requests containing the X-Grafana-URL header. Check Grafana MCP Server logs for suspicious outbound connections to internal or external services. Use tools like tcpdump or Wireshark to inspect HTTP headers for crafted X-Grafana-URL values.

Impact Analysis

An attacker could gain access to sensitive data by stealing the Grafana service-account token. They could also probe or attack internal systems, potentially leading to data breaches, unauthorized access, or service disruption.

Compliance Impact

This vulnerability could lead to unauthorized data access or exfiltration, violating GDPR's data protection principles or HIPAA's safeguards for protected health information. Compliance violations may result in legal penalties, reputational damage, and loss of trust.

Mitigation Strategies

Update Grafana MCP Server to the latest patched version immediately. Disable the MCP Server if not in use. Monitor network traffic for unusual requests containing X-Grafana-URL headers. Restrict access to internal services and cloud metadata endpoints from untrusted networks.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-15583. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart