Lucene search

K
cvelistElasticCVELIST:CVE-2022-38778
HistoryFeb 08, 2023 - 12:00 a.m.

CVE-2022-38778

2023-02-0800:00:00
CWE-20
elastic
www.cve.org
7
kibana
dependency
servercrash
cve-2022-38900

AI Score

6.9

Confidence

High

EPSS

0.004

Percentile

73.4%

A flaw (CVE-2022-38900) was discovered in one of Kibana’s third party dependencies, that could allow an authenticated user to perform a request that crashes the Kibana server process.

CNA Affected

[
  {
    "vendor": "Elastic",
    "product": "kibana",
    "versions": [
      {
        "version": "Versions 7.0.0 through 7.17.8 and 8.0.0 through 8.6.0",
        "status": "affected"
      }
    ]
  }
]