| id: GO-2025-3843 |
| modules: |
| - module: github.com/grafana/grafana-infinity-datasource |
| versions: |
| - fixed: 1.4.2-0.20250731100004-9c736aa21b3a |
| vulnerable_at: 1.4.1 |
| summary: Grafana Infinity Datasource Plugin SSRF Vulnerability in github.com/grafana/grafana-infinity-datasource |
| cves: |
| - CVE-2025-8341 |
| ghsas: |
| - GHSA-3c93-92r7-j934 |
| references: |
| - advisory: https://github.com/advisories/GHSA-3c93-92r7-j934 |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-8341 |
| - fix: https://github.com/grafana/grafana-infinity-datasource/commit/9c736aa21b3a669d3070d3f5f80d949326fafa77 |
| - web: https://github.com/grafana/grafana-infinity-datasource/releases/tag/v3.4.1 |
| - web: https://grafana.com/security/security-advisories/cve-2025-8341 |
| source: |
| id: GHSA-3c93-92r7-j934 |
| created: 2025-08-06T19:53:15.236485738Z |
| review_status: UNREVIEWED |