<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Kibana (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/kibana.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/kibana-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Kibana (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:40 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-42398 – Server-Side Request Forgery (CWE-918) in Kibana allows authenticated users with ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42398</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42398</guid>
    <pubDate>Thu, 28 May 2026 21:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42398</strong></p>
  <p>Server-Side Request Forgery (CWE-918) in Kibana allows authenticated users with connector management privileges to bypass the operator-configured connection allowlist. By configuring a Webhook connector with a crafted target, an attacker can cause Kibana to issue outbound requests to destinations that the egress restriction controls were intended to block.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42398">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4498 – Execution with Unnecessary Privileges (CWE-250) in Kibana’s Fleet plugin debug r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4498</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4498</guid>
    <pubDate>Wed, 08 Apr 2026 17:21:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4498</strong></p>
  <p>Execution with Unnecessary Privileges (CWE-250) in Kibana’s Fleet plugin debug route handlers can lead reading index data beyond their direct Elasticsearch RBAC scope via Privilege Abuse (CAPEC-122). This requires an authenticated Kibana user with Fleet sub-feature privileges (such as agents, agent policies, and settings management).</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4498">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33461 – Incorrect Authorization (CWE-863) in Kibana can lead to information disclosure v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33461</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33461</guid>
    <pubDate>Wed, 08 Apr 2026 17:21:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33461</strong></p>
  <p>Incorrect Authorization (CWE-863) in Kibana can lead to information disclosure via Privilege Abuse (CAPEC-122). A user with limited Fleet privileges can exploit an internal API endpoint to retrieve sensitive configuration data, including private keys and authentication tokens, that should only be accessible to users with higher-level settings privileges. The endpoint composes its response by fetc…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33461">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26938 – Improper Neutralization of Special Elements Used in a Template Engine (CWE-1336)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26938</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26938</guid>
    <pubDate>Thu, 26 Feb 2026 19:32:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26938</strong></p>
  <p>Improper Neutralization of Special Elements Used in a Template Engine (CWE-1336) exists in Workflows in Kibana which could allow an attacker to read arbitrary files from the Kibana server filesystem, and perform Server-Side Request Forgery (SSRF) via Code Injection (CAPEC-242). This requires an authenticated user who has the workflowsManagement:executeWorkflow privilege.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-1336</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26938">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-25018 – Improper Neutralization of Input During Web Page Generation in Kibana can lead t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25018</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25018</guid>
    <pubDate>Fri, 10 Oct 2025 10:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-25018</strong></p>
  <p>Improper Neutralization of Input During Web Page Generation in Kibana can lead to stored Cross-Site Scripting (XSS)</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25018">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-25017 – Improper Neutralization of Input During Web Page Generation in Kibana can lead t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25017</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25017</guid>
    <pubDate>Fri, 10 Oct 2025 10:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-25017</strong></p>
  <p>Improper Neutralization of Input During Web Page Generation in Kibana can lead to Cross-Site Scripting (XSS)</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25017">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-25009 – Improper Neutralization of Input During Web Page Generation in Kibana can lead t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25009</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25009</guid>
    <pubDate>Tue, 07 Oct 2025 14:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-25009</strong></p>
  <p>Improper Neutralization of Input During Web Page Generation in Kibana can lead to Stored XSS via case file upload.</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25009">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43706 – Improper authorization in Kibana can lead to privilege abuse via a direct HTTP r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43706</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43706</guid>
    <pubDate>Tue, 10 Jun 2025 17:19:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43706</strong></p>
  <p>Improper authorization in Kibana can lead to privilege abuse via a direct HTTP request to a Synthetic monitor endpoint.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43706">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-25014 – A Prototype pollution vulnerability in Kibana leads to arbitrary code execution ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25014</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25014</guid>
    <pubDate>Tue, 06 May 2025 18:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-25014</strong></p>
  <p>A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP requests to machine learning and reporting endpoints.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-1321</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25014">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-12556 – Prototype Pollution in Kibana can lead to code injection via unrestricted file u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-12556</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-12556</guid>
    <pubDate>Tue, 08 Apr 2025 20:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-12556</strong></p>
  <p>Prototype Pollution in Kibana can lead to code injection via unrestricted file upload combined with path traversal.</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-1321</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-12556">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-25015 – Prototype pollution in Kibana leads to arbitrary code execution via a crafted fi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25015</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25015</guid>
    <pubDate>Wed, 05 Mar 2025 10:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-25015</strong></p>
  <p>Prototype pollution in Kibana leads to arbitrary code execution via a crafted file upload and specifically crafted HTTP requests. In Kibana versions >= 8.15.0 and < 8.17.1, this is exploitable by users with the Viewer role. In Kibana versions 8.17.1 and 8.17.2 , this is only exploitable by users that have roles that contain all the following privileges: fleet-all, integrations-all, actions:execut…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-1321</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25015">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43707 – An issue was identified in Kibana where a user without access to Fleet can view ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43707</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43707</guid>
    <pubDate>Thu, 23 Jan 2025 06:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43707</strong></p>
  <p>An issue was identified in Kibana where a user without access to Fleet can view Elastic Agent policies that could contain sensitive information. The nature of the sensitive information depends on the integrations enabled for the Elastic Agent and their respective versions.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43707">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-37285 – A deserialization issue in Kibana can lead to arbitrary code execution when Kiba...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37285</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37285</guid>
    <pubDate>Thu, 14 Nov 2024 17:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-37285</strong></p>
  <p>A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document containing a crafted payload. A successful attack requires a malicious user to have a combination of both specific  Elasticsearch indices privileges https://www.elastic.co/guide/en/elasticsearch/reference/current/defining-roles.html#roles-indices-priv  and  Kibana privileges https:…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37285">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-37288 – A deserialization issue in Kibana can lead to arbitrary code execution when Kiba...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37288</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37288</guid>
    <pubDate>Mon, 09 Sep 2024 09:15:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-37288</strong></p>
  <p>A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document containing a crafted payload. This issue only affects users that use  Elastic Security’s built-in AI tools https://www.elastic.co/guide/en/security/current/ai-for-security.html  and have configured an  Amazon Bedrock connector https://www.elastic.co/guide/en/security/current/assist…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37288">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-37287 – A flaw allowing arbitrary code execution was discovered in Kibana. An attacker w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37287</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37287</guid>
    <pubDate>Tue, 13 Aug 2024 12:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-37287</strong></p>
  <p>A flaw allowing arbitrary code execution was discovered in Kibana. An attacker with access to ML and Alerting connector features, as well as write access to internal ML indices can trigger a prototype pollution vulnerability, ultimately leading to arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37287">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-46675 – An issue was discovered by Elastic whereby sensitive information may be recorded...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-46675</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-46675</guid>
    <pubDate>Wed, 13 Dec 2023 07:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-46675</strong></p>
  <p>An issue was discovered by Elastic whereby sensitive information may be recorded in Kibana logs in the event of an error or in the event where debug level logging is enabled in Kibana. Elastic has released Kibana 8.11.2 which resolves this issue. The messages recorded in the log may contain Account credentials for the kibana_system user, API Keys, and credentials of Kibana end-users, Elastic Secu…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-46675">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-46671 – An issue was discovered by Elastic whereby sensitive information may be recorded...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-46671</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-46671</guid>
    <pubDate>Wed, 13 Dec 2023 07:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-46671</strong></p>
  <p>An issue was discovered by Elastic whereby sensitive information may be recorded in Kibana logs in the event of an error. Elastic has released Kibana 8.11.1 which resolves this issue. The error message recorded in the log may contain account credentials for the kibana_system user, API Keys, and credentials of Kibana end-users. The issue occurs infrequently, only if an error is returned from an El…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-46671">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-31422 – An issue was discovered by Elastic whereby sensitive information is recorded in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31422</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31422</guid>
    <pubDate>Thu, 26 Oct 2023 02:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-31422</strong></p>
  <p>An issue was discovered by Elastic whereby sensitive information is recorded in Kibana logs in the event of an error. The issue impacts only Kibana version 8.10.0 when logging in the JSON layout or when the pattern layout is configured to log the %meta pattern. Elastic has released Kibana 8.10.1 which resolves this issue. The error object recorded in the log contains request information, which ca…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31422">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31415 – Kibana version 8.7.0 contains an arbitrary code execution flaw. An attacker with...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31415</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31415</guid>
    <pubDate>Thu, 04 May 2023 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31415</strong></p>
  <p>Kibana version 8.7.0 contains an arbitrary code execution flaw. An attacker with All privileges to the Uptime/Synthetics feature could send a request that will attempt to execute JavaScript code. This could lead to the attacker executing arbitrary commands on the host system with permissions of the Kibana process.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31415">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31414 – Kibana versions 8.0.0 through 8.7.0 contain an arbitrary code execution flaw. An...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31414</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31414</guid>
    <pubDate>Thu, 04 May 2023 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31414</strong></p>
  <p>Kibana versions 8.0.0 through 8.7.0 contain an arbitrary code execution flaw. An attacker with write access to Kibana yaml or env configuration could add a specific payload that will attempt to execute JavaScript code. This could lead to the attacker executing arbitrary commands on the host system with permissions of the Kibana process.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31414">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-35980 – OpenSearch Security is a plugin for OpenSearch that offers encryption, authentic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-35980</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-35980</guid>
    <pubDate>Fri, 12 Aug 2022 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-35980</strong></p>
  <p>OpenSearch Security is a plugin for OpenSearch that offers encryption, authentication and authorization. Versions 2.0.0.0 and 2.1.0.0 of the security plugin are affected by an information disclosure vulnerability. Requests to an OpenSearch cluster configured with advanced access control features document level security (DLS), field level security (FLS), and/or field masking will not be filtered w…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-612</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-35980">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-7013 – Kibana versions before 6.8.9 and 7.7.0 contain a prototype pollution flaw in TSV...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-7013</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-7013</guid>
    <pubDate>Wed, 03 Jun 2020 18:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-7013</strong></p>
  <p>Kibana versions before 6.8.9 and 7.7.0 contain a prototype pollution flaw in TSVB. An authenticated attacker with privileges to create TSVB visualizations could insert data that would cause Kibana to execute arbitrary code. This could possibly lead to an attacker executing code with the permissions of the Kibana process on the host system.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-7013">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-7012 – Kibana versions 6.7.0 to 6.8.8 and 7.0.0 to 7.6.2 contain a prototype pollution ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-7012</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-7012</guid>
    <pubDate>Wed, 03 Jun 2020 18:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-7012</strong></p>
  <p>Kibana versions 6.7.0 to 6.8.8 and 7.0.0 to 7.6.2 contain a prototype pollution flaw in the Upgrade Assistant. An authenticated attacker with privileges to write to the Kibana index could insert data that would cause Kibana to execute arbitrary code. This could possibly lead to an attacker executing code with the permissions of the Kibana process on the host system.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-7012">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-13423 – Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an is...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-13423</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-13423</guid>
    <pubDate>Fri, 23 Aug 2019 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-13423</strong></p>
  <p>Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an issue that an authenticated Kibana user could impersonate as kibanaserver user when providing wrong credentials when all of the following conditions a-c are true: a) Kibana is configured to use Single-Sign-On as authentication method, one of Kerberos, JWT, Proxy, Client certificate. b) The kibanaserver user is configure…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13423">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-7610 – Kibana versions before 6.6.1 contain an arbitrary code execution flaw in the sec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-7610</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-7610</guid>
    <pubDate>Mon, 25 Mar 2019 19:29:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-7610</strong></p>
  <p>Kibana versions before 6.6.1 contain an arbitrary code execution flaw in the security audit logger. If a Kibana instance has the setting xpack.security.audit.enabled set to true, an attacker could send a request that will attempt to execute javascript code. This could possibly lead to an attacker executing arbitrary commands with permissions of the Kibana process on the host system.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-7610">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-7609 – Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-7609</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-7609</guid>
    <pubDate>Mon, 25 Mar 2019 19:29:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-7609</strong></p>
  <p>Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelion visualizer. An attacker with access to the Timelion application could send a request that will attempt to execute javascript code. This could possibly lead to an attacker executing arbitrary commands with permissions of the Kibana process on the host system.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-7609">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-17246 – Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-17246</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-17246</guid>
    <pubDate>Thu, 20 Dec 2018 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-17246</strong></p>
  <p>Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw in the Console plugin. An attacker with access to the Kibana Console API could send a request that will attempt to execute javascript code. This could possibly lead to an attacker executing arbitrary commands with permissions of the Kibana process on the host system.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-73</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-17246">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-17245 – Kibana versions 4.0 to 4.6, 5.0 to 5.6.12, and 6.0 to 6.4.2 contain an error in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-17245</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-17245</guid>
    <pubDate>Thu, 20 Dec 2018 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-17245</strong></p>
  <p>Kibana versions 4.0 to 4.6, 5.0 to 5.6.12, and 6.0 to 6.4.2 contain an error in the way authorization credentials are used when generating PDF reports. If a report requests external resources plaintext credentials are included in the HTTP request that could be recovered by an external resource provider.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-17245">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-8452 – Kibana versions prior to 5.2.1 configured for SSL client access, file descriptor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-8452</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-8452</guid>
    <pubDate>Fri, 16 Jun 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-8452</strong></p>
  <p>Kibana versions prior to 5.2.1 configured for SSL client access, file descriptors will fail to be cleaned up after certain requests and will accumulate over time until the process crashes.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-775</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-8452">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-1000219 – Kibana before 4.5.4 and 4.1.11 when a custom output is configured for logging in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1000219</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1000219</guid>
    <pubDate>Fri, 16 Jun 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-1000219</strong></p>
  <p>Kibana before 4.5.4 and 4.1.11 when a custom output is configured for logging in, cookies and authorization headers could be written to the log files. This information could be used to hijack sessions of other users when using Kibana behind some form of authentication such as Shield.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1000219">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-1000218 – Kibana Reporting plugin version 2.4.0 is vulnerable to a CSRF vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1000218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1000218</guid>
    <pubDate>Fri, 16 Jun 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-1000218</strong></p>
  <p>Kibana Reporting plugin version 2.4.0 is vulnerable to a CSRF vulnerability that could allow an attacker to generate superfluous reports whenever an authenticated Kibana user navigates to a specially-crafted page.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1000218">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
