Vulnerabilities > Elastic > Kibana Reporting > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-16 CVE-2016-1000218 Cross-Site Request Forgery (CSRF) vulnerability in Elastic Kibana Reporting 2.4.0
Kibana Reporting plugin version 2.4.0 is vulnerable to a CSRF vulnerability that could allow an attacker to generate superfluous reports whenever an authenticated Kibana user navigates to a specially-crafted page.
network
low complexity
elastic CWE-352
8.8