
Proof-of-concept exploit for CVE-2025-25014: Prototype pollution in Kibana enabling arbitrary code execution via crafted HTTP requests to ML and reporting endpoints. Currently detects vulnerable instances.
A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP requests to machine learning and reporting endpoints. Currently this POC only detects vulnerable instances.
python CVE-2025-25014.py -u username -p password --proxy proxy_url url