What the vulnerability does

01Description

A flaw (CVE-2022-38900) was discovered in one of Kibana’s third party dependencies, that could allow an authenticated user to perform a request that crashes the Kibana server process.

Key dates

02Disclosure timeline

February 8, 2023 CVE published
March 25, 2025 Record updated