An open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user visits a maliciously crafted URL, it could result in Kibana redirecting the user to an arbitrary website.
Metrics
Affected Vendors & Products
References
History
Tue, 29 Apr 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: elastic
Published: 2022-11-18T00:00:00.000Z
Updated: 2025-04-29T19:36:13.142Z
Reserved: 2021-01-04T00:00:00.000Z
Link: CVE-2021-22141

Updated: 2024-08-03T18:37:16.700Z

Status : Modified
Published: 2022-11-18T23:15:11.553
Modified: 2025-04-29T20:15:18.230
Link: CVE-2021-22141
