Incorrect authorization in Kibana - CVE-2026-63137
Published: September 1, 2026
Vulnerability details
The vulnerability allows a remote user to escalate privileges.
The vulnerability exists due to incorrect authorization in the workflows feature when scheduled workflow executions are run. A remote user can cause scheduled workflow executions to run with the privileges of a different, higher-privileged user to escalate privileges.
Only instances with the Workflows feature enabled are vulnerable.