Improper Input Validation in Kibana by Elastic
CVE-2026-26935
6.5MEDIUM
What is CVE-2026-26935?
An input validation flaw in Kibana's internal content connectors search endpoint can be exploited through malicious input data. This vulnerability can potentially disrupt service availability, leading to a Denial of Service. It highlights the critical need for robust input validation mechanisms to prevent unauthorized manipulation of data, ensuring the integrity and reliability of services.
Affected Version(s)
Kibana 9.3.0
Kibana 8.4.0 <= 8.19.11
Kibana 9.0.0 <= 9.2.5