7.5
CVSSv3

CVE-2023-46673

Published: 22/11/2023 Updated: 30/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.

Vulnerable Product Search on Vulmon Subscribe to Product

elastic elasticsearch

Vendor Advisories

Description<!---->A flaw was found in Elasticsearch A malicious script used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline APIA flaw was found in Elasticsearch A malicious script used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to cra ...