| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-37732 | Kibana Cross-site Scripting via the Integration Package Upload Functionality | Elastic | Kibana | Medium | 5.4 | 2025-12-15 10:21:08 | Deep Dive |
| CVE-2025-37734 | Kibana Origin Validation Error | Elastic | Kibana | Medium | 4.3 | 2025-11-12 09:57:23 | Deep Dive |
| CVE-2025-37735 | Elastic Defend 安全漏洞 | Elastic | Kibana | High | 7.0 | 2025-11-06 14:27:26 | Deep Dive |
| CVE-2025-25017 | Kibana Stored Cross-Site Scripting (XSS) | Elastic | Kibana | High | 8.2 | 2025-10-10 09:53:26 | Deep Dive |
| CVE-2025-25018 | Kibana Stored Cross-Site Scripting (XSS) | Elastic | Kibana | High | 8.7 | 2025-10-10 09:50:35 | Deep Dive |
| CVE-2025-25009 | Kibana Cross-Site Scripting (XSS) | Elastic | Kibana | High | 8.7 | 2025-10-07 13:59:01 | Deep Dive |
| CVE-2025-37728 | Kibana Insufficiently Protected Credentials in the CrowdStrike Connector | Elastic | Kibana | Medium | 5.4 | 2025-10-07 13:54:50 | Deep Dive |
| CVE-2025-25010 | Kibana privilege escalation via reporting_user role | Elastic | Kibana | Medium | 6.5 | 2025-08-28 15:52:09 | Deep Dive |
| CVE-2025-25012 | Kibana Open Redirect | Elastic | Kibana | Medium | 4.3 | 2025-06-25 11:52:54 | Deep Dive |
| CVE-2024-43706 | Kibana Improper Authorization | Elastic | Kibana | High | 7.6 | 2025-06-10 16:59:55 | Deep Dive |
| CVE-2025-25014 | Kibana arbitrary code execution via prototype pollution | Elastic | Kibana | Critical | 9.1 | 2025-05-06 17:30:45 | Deep Dive |
| CVE-2024-11390 | Kibana Unrestricted Upload of File with Dangerous Type Can Lead to XSS | Elastic | Kibana | Medium | 5.4 | 2025-05-01 13:11:14 | Deep Dive |
| CVE-2025-25016 | Kibana Unrestricted Upload of File | Elastic | Kibana | Medium | 4.3 | 2025-05-01 13:09:17 | Deep Dive |
| CVE-2024-12556 | Kibana Prototype Pollution can lead to code injection | Elastic | Kibana | High | 8.7 | 2025-04-08 20:04:22 | Deep Dive |
| CVE-2024-52974 | Elastic Kibana 资源管理错误漏洞 | Elastic | Kibana | Medium | 6.5 | 2025-04-08 16:46:44 | Deep Dive |
| CVE-2025-25015 | Kibana arbitrary code execution via prototype pollution | Elastic | Kibana | Critical | 9.9 | 2025-03-05 09:46:34 | Deep Dive |
| CVE-2024-43708 | Elastic Kibana 安全漏洞 | Elastic | Kibana | Medium | 6.5 | 2025-01-23 10:27:31 | Deep Dive |
| CVE-2024-52972 | Kibana allocation of resources without limits or throttling leads to crash | Elastic | Kibana | Medium | 6.5 | 2025-01-23 06:11:11 | Deep Dive |
| CVE-2024-43707 | Kibana exposure of sensitive information to an unauthorized actor | Elastic | Kibana | High | 7.7 | 2025-01-23 06:08:11 | Deep Dive |
| CVE-2024-43710 | Kibana server-side request forgery | Elastic | Kibana | Medium | 4.3 | 2025-01-23 06:06:39 | Deep Dive |