| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
Known vulnerabilities affecting Elasticsearch products and systems
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2026-78607 | Missing Authorization (CWE-862) in the Elasticsearch custom inference service can lead to information disclosure via Privilege Abuse (CAPEC-122). A user holding only inference execution privileges cou... | 7.1 |
| 370 |
| Neutral |
| No |
| Yes |
| CVE-2026-78605 | Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') (CWE-444) in Elasticsearch can lead to information disclosure via HTTP Request Smuggling (CAPEC-33). Under specific proxy deploy... | 5.9 | 155 | Neutral | No | Yes |
| CVE-2026-72687 | A flaw in Elasticsearch allows a low-privileged authenticated user to submit a single small request containing a forged opaque identifier. Elasticsearch decodes and deserializes the identifier before ... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72686 | A flaw in Elasticsearch allows a low-privileged authenticated user to submit a single request containing a crafted user-supplied input. A specific internal component validates the input using a recurs... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72685 | A flaw in Elasticsearch allows a low-privileged authenticated user who can index documents to submit a single small document containing a crafted user-supplied input. Processing one such document occu... | 4.3 | 99 | Neutral | No | Yes |
| CVE-2026-72684 | A flaw in Elasticsearch allows an authenticated user holding only read privileges to submit a small search request containing a crafted user-supplied input. Processing that input causes a specific int... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72683 | A flaw in Elasticsearch allows an authenticated user with the privileges required to invoke the simulate pipeline API endpoint (https://www.elastic.co/docs/api/doc/elasticsearch/operation/operation-in... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72679 | Elasticsearch does not apply its configurable input length restriction to a user-supplied pattern accepted by an intervals query. Compiling a deeply nested pattern drives unbounded recursion that exha... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72678 | Elasticsearch does not validate a size value taken from a user-supplied input before that value is used to reserve memory for an internal data structure. An authenticated user holding only read privil... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72656 | Memory Allocation with Excessive Size Value (CWE-789) in the ES|QL query processing of Elasticsearch can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user able to s... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72649 | Deserialization of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to remote code execution via Object Injection (CAPEC-586). A specially crafted trained model artifa... | 8.8 | 673 | Neutral | No | Yes |
| CVE-2026-72647 | Uncontrolled Recursion (CWE-674) in Elasticsearch can lead to denial of service via Serialized Data with Nested Payloads (CAPEC-230). An authenticated user holding only read privileges on a single ind... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72645 | Memory Allocation with Excessive Size Value (CWE-789) in Elasticsearch can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user holding only read privileges on a singl... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72642 | The native inference process that Elasticsearch uses to evaluate uploaded machine learning models accepts a model operation that computes a memory address from an offset supplied inside the model, wit... | 8.8 | 545 | Neutral | No | Yes |
| CVE-2026-72639 | Elasticsearch does not enforce an upper bound on a user-supplied count accepted by a search highlighting option, and the allocation derived from that count is not accounted against any circuit breaker... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72638 | Uncontrolled Recursion (CWE-674) in Elasticsearch can lead to denial of service via Input Data Manipulation (CAPEC-153). An authenticated user holding only low-privileged index creation permissions ca... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-72636 | Uncontrolled Recursion (CWE-674) in the Elasticsearch wildcard matching helper can lead to a denial of service via Excessive Allocation (CAPEC-130). The matcher used to resolve wildcard patterns again... | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-63263 | No description available | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-63144 | No description available | 6.5 | 209 | Neutral | No | Yes |
| CVE-2026-63140 | No description available | 6.5 | 209 | Neutral | No | Yes |