CVE-2022-38778
08.02.2023, 21:15
A flaw (CVE-2022-38900) was discovered in one of Kibanas third party dependencies, that could allow an authenticated user to perform a request that crashes the Kibana server process.Enginsight
Vendor | Product | Version |
---|---|---|
decode-uri-component_project | decode-uri-component | 𝑥 < 0.2.1 |
elastic | kibana | 7.0.0 ≤ 𝑥 < 7.17.9 |
elastic | kibana | 8.0.0 ≤ 𝑥 < 8.6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration