CVE-2018-3830
19.09.2018, 19:29
Kibana versions 5.3.0 to 6.4.1 had a cross-site scripting (XSS) vulnerability via the source field formatter that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.
| Vendor | Product | Version |
|---|---|---|
| elastic | kibana | 5.3.0 ≤ 𝑥 ≤ 6.4.1 |
| redhat | openshift_container_platform | 3.11 |
𝑥
= Vulnerable software versions
References