46,000+ Grafana Servers at Risk: “Ghost” Bug Enables Complete Account Takeover
A critical vulnerability (CVE-2025-4123) in Grafana monitoring platforms has left over 46,000 internet-facing systems exposed to account takeover attacks, despite patches being available since May 2024. The flaw combines client-side path traversal with open redirect mechanics, allowing att...
