You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A flaw was discovered in Elasticsearch, where processing a document in a deeply nested pipeline on an ingest node could cause the Elasticsearch node to crash.
CVE-2024-23450 - Medium Severity Vulnerability
Elasticsearch subproject :server
Library home page: https://github.com/elastic/elasticsearch
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/org/elasticsearch/elasticsearch/7.17.15/elasticsearch-7.17.15.jar
Dependency Hierarchy:
Found in HEAD commit: ddbf982f54a01dcec86cab13425f8047dcb250f3
Found in base branch: master
A flaw was discovered in Elasticsearch, where processing a document in a deeply nested pipeline on an ingest node could cause the Elasticsearch node to crash.
Publish Date: 2024-03-27
URL: CVE-2024-23450
Base Score Metrics:
Type: Upgrade version
Origin: https://discuss.elastic.co/t/elasticsearch-8-13-0-7-17-19-security-update-esa-2024-06/356314
Release Date: 2024-03-27
Fix Resolution (org.elasticsearch:elasticsearch): 7.17.19
Direct dependency fix Resolution (org.springframework.boot:spring-boot-starter-data-elasticsearch): 3.0.0
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered: