Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35209
HistoryApr 22, 2022 - 1:31 p.m.

Information Disclosure

2022-04-2213:31:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.001 Low

EPSS

Percentile

31.3%

kibana is vulnerable to information disclosure. A remote unauthenticated attacker is able to gain access to unauthorized information via the Elastic Stack monitoring component in the kibana page source. The vulnerability only impacts the users that have set any of the optional monitoring.ui.elasticsearch.* settings in order to configure kibana as a remote UI for elastic stack monitoring.

0.001 Low

EPSS

Percentile

31.3%