Unauthorized Configuration Modification in Kibana by Elastic
CVE-2026-82302
8.1HIGH
What is CVE-2026-82302?
An Incorrect Authorization vulnerability exists in Kibana, allowing attackers to exploit vulnerabilities in access control mechanisms. This issue can lead to unauthorized modifications of configurations, potentially impacting the integrity and security of the Kibana setup. Correct configuration of access control security levels is crucial to prevent such exploitation.
Affected Version(s)
Kibana 8.0.0 <= 8.19.20
Kibana 9.0.0 <= 9.4.5
Kibana 9.5.0 <= 9.5.2