This post was originally published on this site
When trying to log into Grafana Web UI using an OIDC provider, in my case, Dex. The login would fail due to the error “User already exists”, after some time. This happened for any users given access via the OIDC.
This looks to happen due to a CVE fix implemented in Grafana as documented in the two comments below:
To resolve this issue, for Grafana 10.0.x and 9.5.6, the env variable
GF_AUTH_OAUTH_ALLOW_INSECURE_EMAIL_LOOKUP can be set or the config key
oauth_allow_insecure_email_lookup can be set under the
Hope this helps anyone stuck out there!