Home
HIGH: 8.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:NDefault status
unaffected
8.16.1 (semver) before 8.17.1
affected
Description
Prototype Pollution in Kibana can lead to code injection via unrestricted file upload combined with path traversal.
Problem types
Product status
8.16.1 (semver) before 8.17.1
References
discuss.elastic.co/...7-2-security-update-esa-2025-02/376918