Package
grafana-11.6
Component
grafana-11.6
Latest update
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Impact
CVE-2025-12141 (Information Leakage in Grafana Alerting) is a vulnerability in the Grafana product itself, scanner-flagged at the apk component level. Per Grafana's vendor advisory (https://grafana.com/security/security-advisories/cve-2025-12141/), impacted versions are >8.0.0 <=12.3.0; the fix is in versions >12.3.0 (Grafana 12.4.0+). Grafana has not published a backport patch for the 11.6.x line, so the 11.6 stream cannot remediate this without an upstream-supplied fix. CVSS 1.3 (Low). NVD: https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-12141
Status