Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rotem Reiss

#47110of 53,633
5.4Total CVSS
Vulnerabilities · 1
PT-2019-18673
5.4
2019-12-18
Elastic · Kibana · CVE-2019-7621
**Name of the Vulnerable Software and Affected Versions** Kibana versions prior to 6.8.6 Kibana versions prior to 7.5.1 **Description** The issue is related to a cross site scripting (XSS) flaw in the coordinate and region map visualizations. An attacker who can create coordinate map visualizations could create a malicious visualization. If another Kibana user views that visualization or a dashboard containing it, it could execute JavaScript in the victim's browser. **Recommendations** For versions prior to 6.8.6, update to version 6.8.6 or later. For versions prior to 7.5.1, update to version 7.5.1 or later.