Description
Kibana versions after and including 4.3 and before 4.6.2 are vulnerable to a cross-site scripting (XSS) attack.
Remediation
References
https://www.elastic.co/community/security
Related Vulnerabilities
CVE-2019-1352 Vulnerability in maven package org.webjars.npm:nodegit
CVE-2023-37478 Vulnerability in npm package @pnpm/win-x64
CVE-2018-1306 Vulnerability in maven package org.apache.portals.pluto:portletv3annotateddemo
CVE-2020-2291 Vulnerability in maven package org.jenkins-ci.plugins:couchdb-statistics
CVE-2018-11804 Vulnerability in maven package org.apache.spark:spark-core_2.10