Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-37727

Опубликовано: 10 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.7

Описание

Insertion of sensitive information in log file in Elasticsearch can lead to loss of confidentiality under specific preconditions when auditing requests to the reindex API https://www.elastic.co/docs/api/doc/elasticsearch/operation/operation-reindex

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

resolute

DNE

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 14%
0.0023
Низкий

5.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.7
redhat
10 месяцев назад

Insertion of sensitive information in log file in Elasticsearch can lead to loss of confidentiality under specific preconditions when auditing requests to the reindex API https://www.elastic.co/docs/api/doc/elasticsearch/operation/operation-reindex

CVSS3: 5.7
nvd
10 месяцев назад

Insertion of sensitive information in log file in Elasticsearch can lead to loss of confidentiality under specific preconditions when auditing requests to the reindex API https://www.elastic.co/docs/api/doc/elasticsearch/operation/operation-reindex

msrc
12 дней назад

Elasticsearch Insertion of sensitive information in log file

CVSS3: 5.7
debian
10 месяцев назад

Insertion of sensitive information in log file in Elasticsearch can le ...

CVSS3: 5.7
github
10 месяцев назад

Elasticsearch: Insertion of Sensitive Information into Log File via reindex API

EPSS

Процентиль: 14%
0.0023
Низкий

5.7 Medium

CVSS3