Total vulnerabilities in the database
Starting in version 5.3.0, Kibana had a cross-site scripting (XSS) vulnerability in the Discover page that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.
Software | From | Fixed in |
---|---|---|
elastic / kibana | 5.3.0 | 5.3.0.x |
elastic / kibana | 5.3.1 | 5.3.1.x |
elastic / kibana | 5.3.2 | 5.3.2.x |
elastic / kibana | 5.4.0 | 5.4.0.x |