CVE-2025-37731: Elasticsearch Improper Authentication
Improper Authentication in Elasticsearch PKI realm can lead to user impersonation via specially crafted client certificates. A malicious actor would need to have such a crafted client certificate signed by a legitimate, trusted Certificate Authority.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37731?
CVE-2025-37731 is considered a high severity vulnerability due to the potential for user impersonation.
How do I fix CVE-2025-37731?
To mitigate CVE-2025-37731, ensure that your Elasticsearch installation is updated to the latest version with the security patches applied.
What type of systems are affected by CVE-2025-37731?
CVE-2025-37731 affects Elasticsearch systems using the PKI realm for authentication.
Who can exploit CVE-2025-37731?
A malicious actor with a specially crafted client certificate signed by a trusted Certificate Authority can exploit CVE-2025-37731.
What is the impact of CVE-2025-37731?
The impact of CVE-2025-37731 includes potential unauthorized user access and impersonation within Elasticsearch systems.