Vulnerabilities > Elastic > Kibana > 5.3.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-06-05 | CVE-2017-8440 | Cross-site Scripting vulnerability in Elastic Kibana Starting in version 5.3.0, Kibana had a cross-site scripting (XSS) vulnerability in the Discover page that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users. | 6.1 |