CVE-2024-52974
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Apr 8, 2025
CWE ID 400
Summary
CVE-2024-52974 is a vulnerability affecting the Observability API in Kibana. A maliciously crafted request can lead to the server crashing. This issue necessitates read permissions for Observability for potential attackers to exploit it successfully.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Kibana
Affected Vendors
- Elastic