Open redirect in Grafana - CVE-2025-6023

 

Open redirect in Grafana - CVE-2025-6023

Published: July 21, 2025


Vulnerability identifier: #VU113079
CSH Severity: Medium
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:N/SC:L/SI:N/SA:N]
CVE-ID: CVE-2025-6023
CWE-ID: CWE-601
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to redirect victims to arbitrary URL.

The vulnerability exists due to improper sanitization of user-supplied data. A remote attacker can create a link that leads to a trusted website, however, when clicked, redirects the victim to arbitrary domain.

Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information.


Affected software

Grafana
SUSE Multi-Linux Manager Client Tools for SLE Micro
SUSE Multi-Linux Manager Client Tools for SLE
python-defusedxml
python3-defusedxml
golang-github-prometheus-alertmanager-debuginfo
golang-github-prometheus-alertmanager
dracut-saltboot
python2-rhnlib
python3-rhnlib
supportutils-plugin-susemanager-client
python2-mgr-push
mgr-push
python3-mgr-push
spacewalk-client-tools
python2-spacewalk-client-tools
python3-spacewalk-client-tools
spacecmd
mgrctl-bash-completion
mgrctl-zsh-completion
mgrctl-lang
mgrctl
mgrctl-debuginfo
grafana-debuginfo
grafana
Multi-Linux-ManagerTools-SLE-release
Multi-Linux-ManagerTools-SLE-release-POOL

How to mitigate CVE-2025-6023

Install updates from vendor's website.

Grafana - addressed in versions 11.3.8+security-01, 11.4.6+security-01, 11.5.6+security-01, 11.6.3+security-01, 12.0.2+security-01
python-defusedxml - update to 0.6.0-120002.1.3.1
python3-defusedxml - update to 0.7.1-150002.1.3.2
golang-github-prometheus-alertmanager-debuginfo - addressed in versions 0.28.1-120002.4.3.2, 0.28.1-150002.4.3.3
golang-github-prometheus-alertmanager - addressed in versions 0.28.1-120002.4.3.2, 0.28.1-150002.4.3.3
dracut-saltboot - update to 1.0.0-150002.3.3.1
python2-rhnlib - update to 5.1.3-120002.3.3.1
python3-rhnlib - update to 5.1.3-150002.3.3.2
supportutils-plugin-susemanager-client - addressed in versions 5.1.4-120002.3.3.1, 5.1.4-150002.3.3.2
python2-mgr-push - update to 5.1.4-120002.3.3.3
mgr-push - addressed in versions 5.1.4-120002.3.3.3, 5.1.4-150002.3.3.3
python3-mgr-push - update to 5.1.4-150002.3.3.3
spacewalk-client-tools - addressed in versions 5.1.7-120002.3.3.2, 5.1.7-150002.3.3.3
python2-spacewalk-client-tools - update to 5.1.7-120002.3.3.2
python3-spacewalk-client-tools - update to 5.1.7-150002.3.3.3
spacecmd - addressed in versions 5.1.11-120002.3.3.2, 5.1.11-150002.3.3.2
mgrctl-bash-completion - update to 5.1.20-150002.3.3.3
mgrctl-zsh-completion - update to 5.1.20-150002.3.3.3
mgrctl-lang - update to 5.1.20-150002.3.3.3
mgrctl - update to 5.1.20-150002.3.3.3
mgrctl-debuginfo - update to 5.1.20-150002.3.3.3
grafana-debuginfo - addressed in versions 11.5.7-120002.4.3.2, 11.5.7-150002.4.3.3
grafana - addressed in versions 11.5.7-120002.4.3.2, 11.5.7-150002.4.3.3
Multi-Linux-ManagerTools-SLE-release - update to 12-120002.1.3.2
Multi-Linux-ManagerTools-SLE-release-POOL - update to 12-120002.1.3.2

External References

Related Security Bulletins