Medium severity6.6NVD Advisory· Published Nov 22, 2023· Updated Jun 17, 2026
CVE-2021-22142
CVE-2021-22142
Description
Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- discuss.elastic.co/t/elastic-stack-7-13-0-and-6-8-16-security-update/273964/1nvdVendor Advisory
- www.elastic.co/community/securitynvdVendor Advisory
News mentions
0No linked articles in our index yet.