GreyNoise observed a sharp one-day surge of exploitation attempts targeting CVE-2021-43798 — a Grafana path traversal vulnerability that enables arbitrary file reads. All observed IPs are classified as malicious.
Coordinated Grafana Exploitation Attempts on 28 September
calendar_today
October 2, 2025
domain
greynoise