Description
A flaw was discovered in Kibana, allowing view-only users of alerting to use the run_soon API making the alerting rule run continuously, potentially affecting the system availability if the alerting rule is running complex queries.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36555 | A flaw was discovered in Kibana, allowing view-only users of alerting to use the run_soon API making the alerting rule run continuously, potentially affecting the system availability if the alerting rule is running complex queries. |
References
History
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 13 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Thu, 03 Oct 2024 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Elastic
Elastic kibana |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:elastic:kibana:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Elastic
Elastic kibana |
Status: PUBLISHED
Assigner: elastic
Published:
Updated: 2025-03-13T15:59:46.351Z
Reserved: 2024-06-05T14:21:14.941Z
Link: CVE-2024-37279
Updated: 2024-08-02T03:50:55.975Z
Status : Modified
Published: 2024-06-13T17:15:50.770
Modified: 2025-03-13T16:15:20.190
Link: CVE-2024-37279
OpenCVE Enrichment
No data.
Weaknesses
EUVD