CVE-2025-3717
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
11/11/2025
Last modified:
12/11/2025
Description
When using the Grafana Snowflake Datasource Plugin,<br />
if Oauth passthrough is enabled on the datasource, and multiple users are using the same datasource at the same time on a single Grafana instance, it could result in <br />
<br />
the wrong user identifier being used, and information for which the viewer is not authorized being returned. <br />
<br />
This issue affects Grafana Snowflake Datasource Plugin: from 1.5.0 before 1.14.1.
Impact
Base Score 4.0
2.10
Severity 4.0
LOW



