Количество 3
Количество 3
CVE-2021-22150
It was discovered that a user with Fleet admin permissions could upload a malicious package. Due to using an older version of the js-yaml library, this package would be loaded in an insecure manner, allowing an attacker to execute commands on the Kibana server.
CVE-2021-22150
It was discovered that a user with Fleet admin permissions could uploa ...
GHSA-534g-6jq4-vq89
It was discovered that a user with Fleet admin permissions could upload a malicious package. Due to using an older version of the js-yaml library, this package would be loaded in an insecure manner, allowing an attacker to execute commands on the Kibana server.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-22150 It was discovered that a user with Fleet admin permissions could upload a malicious package. Due to using an older version of the js-yaml library, this package would be loaded in an insecure manner, allowing an attacker to execute commands on the Kibana server. | CVSS3: 6.6 | 0% Низкий | около 2 лет назад | |
CVE-2021-22150 It was discovered that a user with Fleet admin permissions could uploa ... | CVSS3: 6.6 | 0% Низкий | около 2 лет назад | |
GHSA-534g-6jq4-vq89 It was discovered that a user with Fleet admin permissions could upload a malicious package. Due to using an older version of the js-yaml library, this package would be loaded in an insecure manner, allowing an attacker to execute commands on the Kibana server. | CVSS3: 6.6 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу