Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-69j9-xj6j-fmpq

Опубликовано: 22 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.6

Описание

Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.

Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.

EPSS

Процентиль: 64%
0.0047
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-1104

Связанные уязвимости

CVSS3: 6.6
redhat
больше 4 лет назад

Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.

CVSS3: 6.6
nvd
около 2 лет назад

Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.

CVSS3: 6.6
debian
около 2 лет назад

Kibana contains an embedded version of the Chromium browser that the R ...

EPSS

Процентиль: 64%
0.0047
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-1104