FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The last vuln.xml file processed by FreshPorts is:

nothing found there

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
a7a4e96c-ba50-11e5-9728-002590263bf5kibana4 -- XSS vulnerability

Elastic reports:

Fixes XSS vulnerability (CVE pending) - Thanks to Vladimir Ivanov for responsibly reporting.


Discovery 2015-12-17
Entry 2016-01-13
kibana4
kibana41
lt 4.1.4

kibana42
lt 4.2.2

kibana43
lt 4.3.1

ports/205961
ports/205962
ports/205963
https://www.elastic.co/blog/kibana-4-3-1-and-4-2-2-and-4-1-4
fb2475c2-9125-11e5-bd18-002590263bf5kibana4 -- CSRF vulnerability

Elastic reports:

Vulnerability Summary: Kibana versions prior to 4.1.3 and 4.2.1 are vulnerable to a CSRF attack.

Remediation Summary: Users should upgrade to 4.1.3 or 4.2.1.


Discovery 2015-11-17
Entry 2015-11-22
kibana4
kibana41
ge 4.0.0 lt 4.1.3

kibana42
ge 4.2.0 lt 4.2.1

CVE-2015-8131
https://www.elastic.co/community/security/