SecAlerts
Elasticsearch logo

Elasticsearch

Security Risk Profile

39
/100
low

Security Risk Score

Comprehensive risk assessment based on 31 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from December 9, 2013 to present

31
Total CVEs
9
Critical+High
2
Exploited
5
Unpatched

Threat Assessment

Avg CVSS
6.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
5
Critical/High
Risk Level
39/100
low
⚠️ 2 Active Exploits🆕 6Fresh (<7d)📈 9 in Last 30 Days

Severity Distribution

Critical
1
High
8
Medium
22
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
1

Age Distribution

Common Weaknesses (CWE)

1
XSS
3
2
Out-of-bounds Read
2
3
Buffer Overflow
2
4
Infoleak
2
5
Path Traversal
2

Most Affected Products

1. Elasticsearch Logstash27
2. Elasticsearch Elasticsearch21
3. Elastic Kibana21
4. Elastic Elasticsearch17
5. Elasticsearch Packetbeat16

Recent Vulnerabilities

See more →

Monitor Elasticsearch in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.