CVE-2025-25014
06.05.2025, 18:15
A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP requests to machine learning and reporting endpoints.
Vendor | Product | Version |
---|---|---|
elastic | kibana | 8.3.0 ≤ 𝑥 < 8.17.6 |
elastic | kibana | 8.18.0 |
elastic | kibana | 9.0.0 |
𝑥
= Vulnerable software versions