[CLSA-2025:1757427057] grafana: Fix of CVE-2022-23552
Type:
security
Severity:
Moderate
Release date:
2025-09-09 14:11:01 UTC
Description:
- CVE-2022-23552: sanitize SVG inputs in GeoMap by adding a dompurify preprocessor step, preventing stored XSS where malicious SVG could execute arbitrary JavaScript
Updated packages:
  • grafana-9.0.9-4.el9_2.alma.1.tuxcare.els9.x86_64.rpm
    sha:9a2ab6bd1ddfab6b7808d14bbbd29ccb79ef3aad090e9719916624265bc400fa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.