Kibana path traversal issue
CVE-2021-22151
3.1LOW
What is CVE-2021-22151?
It was discovered that Kibana was not validating a user supplied path, which would load .pbf files. Because of this, a malicious user could arbitrarily traverse the Kibana host to load internal files ending in the .pbf extension.
Affected Version(s)
Kibana 7.9.0 < 7.14.0