An open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user visits a maliciously crafted URL, it could result in Kibana redirecting the user to an arbitrary website.
Metrics
Affected Vendors & Products
References
History
Tue, 29 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: elastic
Published: 2022-11-18T00:00:00.000Z
Updated: 2025-04-29T19:36:13.142Z
Reserved: 2021-01-04T00:00:00.000Z
Link: CVE-2021-22141
Updated: 2024-08-03T18:37:16.700Z
Status : Modified
Published: 2022-11-18T23:15:11.553
Modified: 2025-04-29T20:15:18.230
Link: CVE-2021-22141