Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25589
HistoryJun 04, 2020 - 1:22 a.m.

Cross-site Scripting (XSS)

2020-06-0401:22:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

22.7%

kibana is vulnerable to cross-site scripting (XSS). The vulnerability exists as the less dependency, used in the TSVB visualization, allows parsing of javascript code in panel_config/markdown.js.

CPENameOperatorVersion
kibanale7.7.0
kibanale6.8.9

0.001 Low

EPSS

Percentile

22.7%