CVE-2022-23707: An XSS vulnerability was found in Kibana index patterns. Using this vulnerability, an authenticated user with permissions to create index patterns can inject malicious javascript into the index pattern which could execute against other users Please bump to 7.17.0.
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=982defdebb8ec36e0c86ee739c55bc4f5d450a88 commit 982defdebb8ec36e0c86ee739c55bc4f5d450a88 Author: Tomáš Mózes <hydrapolic@gmail.com> AuthorDate: 2022-03-15 18:56:59 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2022-03-16 22:33:39 +0000 www-apps/kibana-bin: bump to 7.17.1 Bug: https://bugs.gentoo.org/833151 Bug: https://bugs.gentoo.org/834543 Signed-off-by: Tomáš Mózes <hydrapolic@gmail.com> Signed-off-by: Sam James <sam@gentoo.org> www-apps/kibana-bin/Manifest | 1 + www-apps/kibana-bin/kibana-bin-7.17.1.ebuild | 91 ++++++++++++++++++++++++++++ 2 files changed, 92 insertions(+)
Thanks! Please cleanup.
Tree clean
Thank you!