216.73.216.233

CVE-2025-11539

· Published 09/10/2025 08:15 · Modified 09/10/2025 15:50

Labels: CVE-2025-11539 2025-10-09CVE-2025-11539CWE-94[email protected]

Essential information

Published
09/10/2025 08:15
Modified
09/10/2025 15:50
Author
Creator
CVSS
9.9 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

Grafana Image Renderer is vulnerable to remote code execution due to an arbitrary file write vulnerability. This is due to the fact that the /render/csv endpoint lacked validation of the filePath parameter that allowed an attacker to save a shared object to an arbitrary location that is then loaded by the Chromium process. Instances are vulnerable if: 1. The default token ("authToken") is not changed, or is known to the attacker. 2. The attacker can reach the image renderer endpoint. This issue affects grafana-image-renderer: from 1.0.0 through 4.0.16.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
grafana / grafana-image-renderer cpe:2.3:a:grafana:grafana-image-renderer:1.0.0-4.0.16:*:*:*:*:*:*:*

References