Количество 3
Количество 3
CVE-2026-33458
Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead to information disclosure. An authenticated user with workflow creation and execution privileges can bypass host allowlist restrictions in the Workflows Execution Engine, potentially exposing sensitive internal endpoints and data.
CVE-2026-33458
Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead ...
GHSA-grxp-xwh4-267v
Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead to information disclosure. An authenticated user with workflow creation and execution privileges can bypass host allowlist restrictions in the Workflows Execution Engine, potentially exposing sensitive internal endpoints and data.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33458 Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead to information disclosure. An authenticated user with workflow creation and execution privileges can bypass host allowlist restrictions in the Workflows Execution Engine, potentially exposing sensitive internal endpoints and data. | CVSS3: 6.3 | 0% Низкий | 4 месяца назад | |
CVE-2026-33458 Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead ... | CVSS3: 6.3 | 0% Низкий | 4 месяца назад | |
GHSA-grxp-xwh4-267v Server-Side Request Forgery (CWE-918) in Kibana One Workflow can lead to information disclosure. An authenticated user with workflow creation and execution privileges can bypass host allowlist restrictions in the Workflows Execution Engine, potentially exposing sensitive internal endpoints and data. | CVSS3: 6.3 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу