Package
grafana-11.2
Component
github.com/grafana/grafana-plugin-sdk-go
Latest update
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
The vulnerability applies to build scripts in the grafana-go-sdk, not the library itself. Further, we don't pass sensitive information in our git clone urls so our builds of grafana would not be affected anyway.
Status
Impact
Remediating this CVE requires upgrading to v0.250.0 or later of the 'grafana-plugin-sdk-go'. Upgrading this plugin in the current version of the code, results in build issues.
Status