Filter
AND
-Infinity
0

maven/org.elasticsearch:elasticsearchElasticsearch Insertion of sensitive information in audit logs

7.5
First published (updated )

maven/org.elasticsearch:elasticsearchElasticsearch StackOverflow vulnerability

7.5
First published (updated )

maven/org.elasticsearch:elasticsearchElasticsearch elasticsearch-certutil csr fails to encrypt private key

7.5
First published (updated )

maven/org.elasticsearch:elasticsearchElasticsearch Uncontrolled Resource Consumption vulnerability

7.5
First published (updated )

go/github.com/elastic/beatsBeats Insertion of Sensitive Information into Log File

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/org.elasticsearch:elasticsearchAn issue was discovered by Elastic whereby Watcher search input logged the search query results on D…

First published (updated )

ElasticA high-privileged user, allowed to create custom osquery packs 17 could affect the availability of K…

First published (updated )

ElasticSSRF

First published (updated )

ElasticRace Condition

First published (updated )

ElasticXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticInfoleak

First published (updated )

ElasticCode Injection

8.8
First published (updated )

ElasticElasticsearch versions from 6.7.0 before 6.8.8 and 7.0.0 before 7.6.2 contain a privilege escalation…

8.8
First published (updated )

redhat/kibanaXSS

First published (updated )

redhat/elasticsearchElasticsearch versions before 6.8.13 and 7.9.2 contain a document disclosure flaw when Document or F…

3.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

redhat/kibanaCode Injection

7.2
First published (updated )

ElasticElasticsearch versions before 7.10.0 and 6.8.14 have an information disclosure issue when audit logg…

First published (updated )

ElasticThe fix for CVE-2020-7009 was found to be incomplete. Elasticsearch versions from 6.7.0 to 6.8.7 and…

8.8
First published (updated )

ElasticIn Elasticsearch before 7.9.0 and 6.8.12 a field disclosure flaw was found when running a scrolling …

First published (updated )

ElasticIn Elasticsearch versions before 7.13.3 and 6.8.17 an uncontrolled recursion vulnerability that coul…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticKibana Reporting vulnerabilities

8.8
First published (updated )

ElasticAn open redirect flaw was found in Kibana versions before 7.13.0 and 6.8.16. If a logged in user vis…

First published (updated )

ElasticIn Kibana versions before 7.12.0 and 6.8.15 a flaw in the session timeout was discovered where the x…

3.6
First published (updated )

ElasticInput Validation

First published (updated )

ElasticAn open redirect issue was discovered in Kibana that could lead to a user being redirected to an arb…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticXSS

First published (updated )

maven/org.elasticsearch:elasticsearchIt was identified that malformed scripts used in the script processor of an Ingest Pipeline could ca…

7.5
First published (updated )

ElasticElastic Agent Insertion of Sensitive Information into Log File

EPSS
0.05%
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203