blob: 64b6a125cbc3f14000887f8d119712e0bdba97b6 [file] [log] [blame]
id: GO-2025-3843
modules:
- module: github.com/grafana/grafana-infinity-datasource
versions:
- fixed: 1.4.2-0.20250731100004-9c736aa21b3a
vulnerable_at: 1.4.1
summary: Grafana Infinity Datasource Plugin SSRF Vulnerability in github.com/grafana/grafana-infinity-datasource
cves:
- CVE-2025-8341
ghsas:
- GHSA-3c93-92r7-j934
references:
- advisory: https://github.com/advisories/GHSA-3c93-92r7-j934
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-8341
- fix: https://github.com/grafana/grafana-infinity-datasource/commit/9c736aa21b3a669d3070d3f5f80d949326fafa77
- web: https://github.com/grafana/grafana-infinity-datasource/releases/tag/v3.4.1
- web: https://grafana.com/security/security-advisories/cve-2025-8341
source:
id: GHSA-3c93-92r7-j934
created: 2025-08-06T19:53:15.236485738Z
review_status: UNREVIEWED