Threats Tagged 'bit-kibana-2026-72680'
View all threats tagged with 'bit-kibana-2026-72680'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'bit-kibana-2026-72680'
Click on any threat for detailed analysis and mitigation recommendations
Elk: Authorization Bypass Through User-Controlled Key in Kibana Agent Builder Leading to Unauthorized Data Modification (CVE-2026-72680)CVE-2026-72680 0 A vulnerability in Kibana Agent Builder's A2A JSON-RPC API endpoint allows an authenticated user with read privileges to replace and reassign another user's stored conversation by supplying a user-controlled identifier. This results in the original owner losing access to that conversation and its history. The attacker cannot read the overwritten content. The impact is limited to integrity and availability loss of the affected conversation. A patch is available to address this issue. Join the discussion | GCVE Database | 08/19/2026, 08:40:48 UTC Added: 08/19/2026, 13:50:33 UTC |
Showing 1 to 1 of 1 result