Related Vulnerabilities: CVE-2021-22141  

An open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user visits a maliciously crafted URL, it could result in Kibana redirecting the user to an arbitrary website.

Severity Medium

Remote Yes

Type Open redirect

Description

An open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user visits a maliciously crafted URL, it could result in Kibana redirecting the user to an arbitrary website.

AVG-1570 kibana 7.10.1-1 High Vulnerable FS#70038

https://discuss.elastic.co/t/elastic-stack-7-13-0-and-6-8-16-security-update/273964