Skip to content

Update Grafana image to v10.4.18 to address CVE-2025-4123#237

Open
eamongoodwin wants to merge 1 commit into
portainer:masterfrom
eamongoodwin:patch-1
Open

Update Grafana image to v10.4.18 to address CVE-2025-4123#237
eamongoodwin wants to merge 1 commit into
portainer:masterfrom
eamongoodwin:patch-1

Conversation

@eamongoodwin

Copy link
Copy Markdown

This updates the Swarm monitoring stack to use the official Grafana v10.4.18 image, which includes the security fix for CVE-2025-4123 ("Grafana Ghost"). The previous image (v9.5.2) is unpatched and susceptible to client-side open redirect and plugin injection.

image: grafana/grafana:10.4.18+security-01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant