{"id":"CVE-2026-72668","title":"Unintended Proxy or Intermediary ('Confused Deputy') (CWE-441) in Kibana Agent Builder can lead to privilege escalation","summary":"Unintended Proxy or Intermediary ('Confused Deputy') (CWE-441) in Kibana Agent Builder can lead to privilege escalation. A non-administrative user able to edit a shared agent could cause privileged operations to be carried out under the …","severity":"high","cvss":7.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N","cwe":["CWE-441"],"vendor":"Elastic","product":"Kibana","affected":["Kibana >= 9.4.0 <= 9.4.6"],"published":"2026-09-26","updated":"2026-09-26","sourceUpdated":"2026-09-26T21:16:55.540","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-72668","references":[{"url":"https://discuss.elastic.co/t/kibana-9-4-7-9-5-0-security-update-esa-2026-85/390678","label":"security@elastic.co"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-26T21:38:01.501Z","slug":"CVE-2026-72668","body":"## Overview\n\nUnintended Proxy or Intermediary ('Confused Deputy') (CWE-441) in Kibana Agent Builder can lead to privilege escalation. A non-administrative user able to edit a shared agent could cause privileged operations to be carried out under the identity of a higher-privileged user who subsequently interacts with that agent. Where the same user can also author workflows, this can extend to full administrative control of Kibana and of the Elasticsearch cluster.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":40.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}