
Critical Vulnerability CVE-2025-25014 in Kibana Allows Remote Code Execution
Technology
The vulnerability CVE-2025-25014, rated with a CVSS score of 9.1, affects Kibana and can lead to remote code execution (RCE) through prototype pollution. This critical flaw requires an immediate update to avoid potential exploitations. The vulnerability allows an attacker to manipulate JavaScript objects, which can result in the execution of arbitrary code on the Kibana server. Users are strongly encouraged to apply the available patches to secure their systems.