Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Elad Pticha

#51953of 56,330
5Total CVSS
Vulnerabilities · 1
PT-2025-31801
5.0
2025-08-04
Grafana · Infinity Datasource Plugin · CVE-2025-8341
**Name of the Vulnerable Software and Affected Versions** Grafana versions prior to 3.4.1 **Description** Grafana is an open-source platform for monitoring and observability. The Infinity datasource plugin, maintained by Grafana Labs, allows visualizing data from JSON, CSV, XML, GraphQL, and HTML endpoints. If the plugin was configured to allow only certain URLs, an attacker could bypass this restriction using a specially crafted URL. **Recommendations** Update to version 3.4.1 or later.