Количество 3
Количество 3
CVE-2026-63142
Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with access to the Reporting feature to bypass outbound request restrictions configured by an administrator, causing the reporting service to send requests to network destinations that should be denied by the configured security policy.
CVE-2026-63142
Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an ...
GHSA-mq6c-w86q-vpp3
Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with access to the Reporting feature to bypass outbound request restrictions configured by an administrator, causing the reporting service to send requests to network destinations that should be denied by the configured security policy.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-63142 Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with access to the Reporting feature to bypass outbound request restrictions configured by an administrator, causing the reporting service to send requests to network destinations that should be denied by the configured security policy. | CVSS3: 5 | 0% Низкий | 15 дней назад | |
CVE-2026-63142 Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an ... | CVSS3: 5 | 0% Низкий | 15 дней назад | |
GHSA-mq6c-w86q-vpp3 Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with access to the Reporting feature to bypass outbound request restrictions configured by an administrator, causing the reporting service to send requests to network destinations that should be denied by the configured security policy. | CVSS3: 5 | 0% Низкий | 15 дней назад |
Уязвимостей на страницу