An incident occurred where the DingDing alerting integration URL was inadvertently exposed to viewers due to a setting oversight in versions below or equals to 12.0.1.
id: CVE-2025-3415
info:
name: Grafana - Exposes DingDing API Keys
author: lucasribolli
severi
...