A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimately a Denial of Service.
2023-10-26T18:15:08.647
2025-02-13T17:16:27.630
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | elastic | elasticsearch | ≤ 7.17.12 | Yes |
Application | elastic | elasticsearch | ≤ 8.9.0 | Yes |