Skip to main content

Vendor/product archive

elastic / elastic_agent CVEs

Beta · best-effort

5 CVEs tagged to elastic / elastic_agent0 Critical, 0 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2024-52976

Published May 1, 2025

Inclusion of functionality from an untrusted control sphere in Elastic Agent subprocess, osqueryd, allows local attackers to execute arbitrary code via parameter injection. An at…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-37283

Published Aug 12, 2024

An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-6687

Published Dec 12, 2023

An issue was discovered by Elastic whereby Elastic Agent would log a raw event in its own logs at the WARN or ERROR level if ingesting that event to Elasticsearch failed with any…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1