CVE-2025-6197: Medium severity Grafana Grafana OSS vulnerability
An open redirect vulnerability has been identified in Grafana OSS organization switching functionality.
Prerequisites for exploitation:
- Multiple organizations must exist in the Grafana instance
- Victim must be on a different organization than the one specified in the URL
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6197?
CVE-2025-6197 is considered a medium severity vulnerability due to the potential for phishing attacks.
How does CVE-2025-6197 work?
CVE-2025-6197 operates by allowing an attacker to redirect users to an arbitrary URL by exploiting the organization switching feature in Grafana.
Who is affected by CVE-2025-6197?
CVE-2025-6197 affects users of Grafana OSS that utilize multiple organizations within their instances.
How can I mitigate CVE-2025-6197?
To mitigate CVE-2025-6197, ensure that organization switching is securely implemented and educate users about the risks of untrusted links.
Are there patches available for CVE-2025-6197?
Yes, patches have been released for CVE-2025-6197 in recent updates of Grafana OSS.