CVE-2026-72658
A remote authenticated attacker can exploit multiple vulnerabilities in Kibana to disclose confidential information including credentials, manipulate data and configurations, bypass permissions and cause a Denial of Service.
CSIRTS triage
- What
- Multiple vulnerabilities in Kibana allow remote authenticated attackers to disclose credentials, manipulate configurations, bypass permissions, and cause denial of service.
- Who is affected
- Kibana deployments of unspecified versions accessible to authenticated users are affected.
- Urgency
- High urgency; multiple privilege escalation and data disclosure paths exist; remediation should be prioritized.
- Action
- Update Kibana to a patched version addressing CVE-2026-72629, CVE-2026-72630, CVE-2026-72631, CVE-2026-72632, CVE-2026-72643, CVE-2026-72650, CVE-2026-72651, and CVE-2026-72655.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch CVE-2026-72658
Get an email if CVE-2026-72658 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.
Exploitation outlook
- Low exploitation risk0.13% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
Advisory coverage (3)
- high[NEW] [high] Kibana: Multiple vulnerabilitiescert-bund · 2026-08-14
- unknownMultiple vulnerabilities in Elastic Kibana (August 14, 2026)cert-fr-avis · 2026-08-14
- highCVE-2026-72658: Cross-Site Request Forgery (CWE-352) in Kibana can lead to privilege escalation via Cross Site…nvd · 2026-08-13
External references
Embed the live status
— this badge updates automatically when the KEV or exploit status changes. How to embed it →
[](https://www.csirts.com/cve/CVE-2026-72658)