github.com/grafana/grafana is vulnerable to Cross Site Scripting (XSS) attacks. The vulnerability exists due to svg files not being sanitized properly allowing an attacker to execute arbitrary JavaScript in the context of an authorized user.
github.com/grafana/grafana/commit/1c8a50b36973bd59a1cc5f34c30de8a9a6a431f0
github.com/grafana/grafana/commit/8b574e22b53aa4c5a35032a58844fd4aaaa12f5f
github.com/grafana/grafana/commit/c022534e3848a5d45c0b3face23b43aa44e4400a
github.com/grafana/grafana/pull/62143
github.com/grafana/grafana/security/advisories/GHSA-8xmm-x63g-f6xv