Known vulnerabilities in Enterprise Search
Vendor:
Elastic Stack
Software:
Enterprise Search
Software CPE:
cpe:2.3:a:elastic_stack:enterprise_search:*:*:*:*:*:*:*:*
Website:
https://www.elastic.co/
Total vulnerabilities:
2
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.9
Breakdown by Severity Chart
8.19.19
8.19.18
8.19.17
8.19.16
8.19.15
8.19.14
8.19.13
8.19.12
8.19.11
8.19.10
8.19.9
8.19.8
8.19.7
8.19.6
8.18.8
8.19.5
8.19.4
8.18.7
8.18.6
8.19.3
8.19.2
8.19.1
8.19.0
8.18.5
8.18.4
8.18.3
8.18.1
8.18.0
8.17.10
8.17.9
8.17.8
8.17.7
8.17.6
8.17.5
8.17.4
8.17.3
8.16.6
8.16.5
8.17.2
8.16.4
8.17.1
8.16.3
8.16.2
8.17.0
8.15.5
8.16.1
8.15.4
8.15.3
8.15.2
8.15.1
8.16.0
8.14.3
8.14.2
8.14.1
8.13.4
8.13.3
8.15.0
8.13.2
8.13.1
8.14.0
8.12.2
8.12.1
8.11.4
8.13.0
8.12.0
8.11.3
8.11.2
8.11.1
8.11.0
8.10.4
8.10.3
8.10.2
8.10.1
8.10.0
8.9.2
8.9.1
8.9.0
8.8.2
8.8.1
8.8.0
8.7.1
8.7.0
8.6.2
8.6.1
8.6.0
8.5.3
8.5.2
8.5.1
8.5.0
8.4.3
8.4.2
8.4.1
8.4.0
8.3.3
8.3.2
8.3.1
8.3.0
8.2.3
8.2.2
8.2.1
8.2.0
8.1.3
8.1.2
8.1.1
8.1.0
8.0.1
8.0.0
7.17.16
7.17.15
7.17.14
7.17.13
7.17.12
7.17.11
7.17.10
7.17.9
7.17.8
7.17.7
7.17.6
7.17.5
7.17.4
7.17.3
7.17.2
7.17.1
7.17.0
7.16.3
7.16.2
7.16.1
7.16.0
7.15.2
7.15.1
7.15.0
7.14.2
7.14.1
7.14.0
7.13.4
7.13.3
7.13.2
7.13.1
7.13.0
7.12.1
7.12.0
7.11.2
7.11.1
7.11.0
7.10.2
7.10.1
7.10.0
7.9.3
7.9.2
7.9.1
7.9.0
7.8.1
7.8.0
7.7.1
7.7.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114385 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2025-54988 |
CWE-611 | Medium | 8.18.6, 8.19.3 | 22.08.2025 |
SB2025082219 SB2025083007 SB2025083008 and 31 more |
||
| #VU84393 - Information Exposure Through Log Files CVE-2023-49923 |
CWE-532 | Low | 7.17.16, 8.11.2 | 13.12.2023 |
SB2023121338 |