kibana-8

Direct Vulnerabilities

Known vulnerabilities in the kibana-8 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2026-15157

*
  • L
Resource Exhaustion

*
  • M
CVE-2026-16728

*
  • M
CVE-2026-16729

*
  • L
Improper Input Validation

*
  • L
CVE-2026-18446

*
  • L
GHSA-r292-9mhp-454m

*
  • L
CVE-2026-14257

*
  • L
CVE-2026-16221

*
  • L
Uncaught Exception

*
  • L
Algorithmic Complexity

*
  • L
CVE-2026-13676

*
  • L
GHSA-pmv8-rq9r-6j72

*
  • L
Uncaught Exception

*
  • L
GHSA-42h9-826w-cgv3

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
GHSA-mmx7-hfxf-jppx

*
  • L
Algorithmic Complexity

*
  • L
Incorrect Type Conversion or Cast

*
  • L
GHSA-7q8q-rj6j-mhjq

*
  • L
CVE-2026-13149

*
  • L
GHSA-jqh4-m9w3-8hp9

*
  • L
CVE-2026-39244

*
  • H
OS Command Injection

*
  • H
Inefficient Regular Expression Complexity

*
  • L
CVE-2026-11525

*
  • L
CVE-2026-6733

*
  • L
CVE-2026-9679

*
  • L
CVE-2026-12151

*
  • L
GHSA-p6gq-j5cr-w38f

*
  • L
Arbitrary Code Injection

*
  • L
GHSA-r7g4-qg5f-qqm2

*
  • L
Uncontrolled Recursion

*
  • L
CVE-2026-12143

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • L
Interpretation Conflict

*
  • L
Uncontrolled Recursion

*
  • L
Algorithmic Complexity

*
  • L
GHSA-268h-hp4c-crq3

*
  • L
GHSA-wqvq-jvpq-h66f

*
  • L
Directory Traversal

*
  • L
Cleartext Transmission of Sensitive Information

*
  • L
Uncaught Exception

*
  • L
Uncaught Exception

*
  • L
Uncaught Exception

*
  • L
Resource Exhaustion

*
  • L
Information Exposure

*
  • H
Information Exposure

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • M
Resource Exhaustion

*
  • L
Arbitrary Code Injection

*
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Unintended Proxy or Intermediary ('Confused Deputy')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Directory Traversal

<8.19.3-r0
  • L
Interpretation Conflict

*
  • L
Information Exposure

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Uncontrolled Recursion

*
  • H
Use of Uninitialized Resource

*
  • L
Arbitrary Code Injection

*
  • L
Improper Handling of Exceptional Conditions

*
  • L
OS Command Injection

*
  • L
Uncontrolled Recursion

*
  • L
Improper Input Validation

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • L
Deserialization of Untrusted Data

*
  • L
Improper Handling of Unicode Encoding

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Arbitrary Code Injection

*