Known vulnerabilities in Elastic Stack Kibana

Vendor: Elastic Stack
Website: https://www.elastic.co/
Total Security Bulletins: 55

Security bulletins (55)

Secuity bulletin Severity Status Published
SB20260113103: Multiple vulnerabilities in Elastic Kibana High
Patched
13.01.2026
SB2025121929: Multiple vulnerabilities in Kibana Medium
Patched
19.12.2025
SB2025121525: Multiple vulnerabilities in Kibana Low
Patched
15.12.2025
SB2025111256: Multiple vulnerabilities in Kibana Medium
Patched
12.11.2025
SB2025100655: Multiple vulnerabilities in Kibana Medium
Patched
06.10.2025
SB2025100654: Reflected XSS in Kibana Low
Patched
06.10.2025
SB2025083006: Incorrect authorization in Elastic Kibana Medium
Patched
30.08.2025
SB2025062470: Kibana update for Google Chromium High
Patched Public exploit
24.06.2025
SB2025062469: Open redirect in Kibana Low
Patched
24.06.2025
SB2025061075: Improper authorization in Kibana Medium
Patched
10.06.2025
SB2025050668: Authenticated code execution via prototype pollution in Kibana Low
Patched Public exploit
06.05.2025
SB2025050131: Stored XSS in Kibana Low
Patched
01.05.2025
SB2025050125: Arbitrary file upload in Elastic Kibana Medium
Patched
01.05.2025
SB2025040884: Authenticated code execution via prototype pollution in Kibana Medium
Patched
08.04.2025
SB2025040883: Denial of service in Elastic Kibana Medium
Patched
08.04.2025
SB2025030544: Authenticated code execution via prototype pollution in Kibana Medium
Patched
05.03.2025
SB2025012329: Multiple vulnerabilities in Elastic Kibana Medium
Patched
23.01.2025
SB2025012116: Denial of service in Elastic Kibana Medium
Patched
21.01.2025
SB2024090615: Multiple remote code execution vulnerabilities in Elastic Kibana High
Patched
06.09.2024
SB2024080624: Prototype pollution in Kibana High
Patched
06.08.2024


Showing elements 1 - 20 out of 55