GHSA-vv4j-vm47-33w3MediumCVSS 4.3

Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana can lead to information...

Published
July 22, 2026
Last Modified
July 22, 2026

🔗 CVE IDs covered (1)

📋 Description

Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana can lead to information disclosure via user-supplied identifiers that reference scheduled query result data from Kibana Spaces the requester is not authorized to access.

🔗 References (3)