Loading the current evidence view. Navigation and account controls remain available.
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type cve · source NVD CVE
Grouped attempts with latest status; expand for attempt history.
9 attempts · first 2026-09-01T21:06:03.968834Z · last 2026-09-05T20:25:45.913321Z
Not listed in CISA KEV (local)
Types: cisa_kev
9 attempts · first 2026-09-01T21:06:03.972472Z · last 2026-09-05T20:25:45.916758Z
Improper Neutralization of Special Elements in Data Query Logic (CWE-943) in Kibana can lead to information disclosure via NoSQL Injection (CAPEC-676). An authenticated user with access to the affected query functionality could submit specially crafted input that alters the intended query logic, returning data the user is not authorized to read. · CWEs: CWE-943 · NVD configuration lists 2 CPE crit
Types: nvd_local
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.