CVE-2024-8986

CVSS V2 None CVSS V3 None
Description
The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI for the plugin being built, as retrieved by running `git remote get-url origin`. If credentials are included in the repository URI (for instance, to allow for fetching of private dependencies), the final binary will contain the full URI, including said credentials.
Overview
  • CVE ID
  • CVE-2024-8986
  • Assigner
  • GRAFANA
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-09-19T10:57:01.035Z
  • Last Modified Date
  • 2024-09-19T13:38:02.412Z
References
History
Created Old Value New Value Data Type Notes
2024-10-06 05:12:37 Added to TrackCVE