Filter
AND
-Infinity
0

Logstash Management APILogstash Improper Certificate Validation in TCP output

First published (updated )

ElasticElasticsearch Uncontrolled Resource Consumption vulnerability

First published (updated )

ElasticKibana Unrestricted Upload of File with Dangerous Type Can Lead to XSS

First published (updated )

ElasticKibana Unrestricted Upload of File

First published (updated )

ElasticElastic Agent Inclusion of Functionality from Untrusted Control Sphere

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticElastic Agent / Elastic Endpoint Security local API key disclosure

First published (updated )

ElasticElastic Defend Insertion of Sensitive Information into Log Files

First published (updated )

maven/org.elasticsearch:elasticsearchAn issue was discovered in Elasticsearch, where a large recursion using the Well-KnownText formatted…

First published (updated )

ElasticAn issue has been identified where a specially crafted request sent to an Observability API could ca…

First published (updated )

ElasticElasticsearch Uncontrolled Resource Consumption vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticAn allocation of resources without limits or throttling in Kibana can lead to a crash caused by a sp…

First published (updated )

ElasticKibana allocation of resources without limits or throttling leads to crash

First published (updated )

ElasticKibana server-side request forgery

First published (updated )

ElasticKibana allocation of resources without limits or throttling leads to crash

First published (updated )

ElasticElastic Defend Improper Handling of Alternate Encoding Leads to Crash

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/org.elasticsearch:elasticsearchElasticsearch Incorrect Authorization

First published (updated )

ElasticElastic Agent Insertion of Sensitive Information into Log File

First published (updated )

go/github.com/elastic/apm-serverAPM Server Insertion of Sensitive Information into Log File

First published (updated )

ElasticKibana Denial of Service issue

First published (updated )

maven/org.elasticsearch:elasticsearchAn issue was discovered by Elastic whereby Watcher search input logged the search query results on D…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElasticA high-privileged user, allowed to create custom osquery packs 17 could affect the availability of K…

First published (updated )

ElasticKibana open redirect issue

First published (updated )

CVE-2024-37279Kibana Broken Access Control issue

First published (updated )

maven/org.elasticsearch:elasticsearchElasticsearch StackOverflow vulnerability

First published (updated )

maven/org.elasticsearch:elasticsearchElasticsearch Uncaught Exception

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/org.elasticsearch:elasticsearchElasticsearch Incorrect Authorization in the Remote Cluster Security API key based security model

First published (updated )

Elastic Network Drive ConnectorElastic Network Drive Connector Improper Access Control

EPSS
0.05%
First published (updated )

ElasticKibana Broken Access Control issue

EPSS
0.05%
First published (updated )

ElasticElastic Agent Insertion of Sensitive Information into Log File

EPSS
0.05%
First published (updated )

go/github.com/elastic/beatsBeats Insertion of Sensitive Information into Log File

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203