CVE-2025-25012
25.06.2025, 12:15
URL redirection to an untrusted site ('Open Redirect') in Kibana can lead to sending a user to an arbitrary site and server-side request forgery via a specially crafted URL.| Vendor | Product | Version |
|---|---|---|
| elastic | kibana | 7.0.0 ≤ 𝑥 < 7.17.29 |
| elastic | kibana | 8.0.0 ≤ 𝑥 < 8.17.8 |
| elastic | kibana | 8.18.0 ≤ 𝑥 < 8.18.3 |
| elastic | kibana | 9.0.0 ≤ 𝑥 < 9.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration