id: exposed-kibana info: name: Exposed Kibana author: Shine severity: medium tags: kibana,unauth http: - method: GET path: - '{{BaseURL}}' - '{{BaseURL}}/app/kibana/' matchers-condition: and matchers: - type: word words: - 'kibanaWelcomeView' - 'cluster_uuid' - 'kibanaWelcomeLogo' - 'kibanaWelcomeTitle' - type: status status: - 200