Total vulnerabilities in the database
Kibana versions before 7.12.1 contain a denial of service vulnerability was found in the webhook actions due to a lack of timeout or a limit on the request size. An attacker with permissions to create webhook actions could drain the Kibana host connection pool, making Kibana unavailable for all other users.
Software | From | Fixed in |
---|---|---|
elastic / kibana | - | 7.12.1 |