elastic
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting elastic.
- CVE-2026-49096Uncaught Exception in Kibana Cases Leading to Denial of Service4.3
- CVE-2026-72636Uncontrolled Recursion in Elasticsearch Wildcard Matching Leading to Denial of Service6.5
- CVE-2026-72632Observable Discrepancy in Kibana Fleet Leading to Disclosure of Elastic Agent Elasticsearch API Keys7.1
- CVE-2026-72631Improper Privilege Management in Kibana Fleet Leading to Over-Scoped Elastic Agent API Keys6.5
- CVE-2026-72630Incorrect Authorization in Kibana Fleet Leading to Privilege Escalation7.1
- CVE-2026-72629Authorization Bypass Through User-Controlled Key in Kibana Leading to Cross-Space Access to Machine Learning Trained Models7.1
- CVE-2026-72643Incorrect Authorization in Kibana Agent Builder Leading to Disclosure and Tampering of Private Agents7.1
- CVE-2026-72642Use of Out-of-range Pointer Offset in the Elasticsearch Machine Learning Native Inference Process8.8
- CVE-2026-72640Unintended Proxy or Intermediary in Elastic Cloud on Kubernetes Leading to Cross-Namespace Secret Disclosure6.5
- CVE-2026-72639Memory Allocation with Excessive Size Value in Elasticsearch Highlighting Leading to Denial of Service6.5
- CVE-2026-72638Uncontrolled Recursion in Elasticsearch Leading to Denial of Service6.5
- CVE-2026-72647Uncontrolled Recursion in Elasticsearch Leading to Denial of Service6.5
- CVE-2026-72645Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service6.5
- CVE-2026-72648Cleartext Storage of Sensitive Information in an Environment Variable in Elastic Cloud on Kubernetes Leading to Information Disclosure6.5
- CVE-2026-72657Authorization Bypass Through User-Controlled Key in Fleet Server Leading to Information Disclosure6.5