Skip to content

Elasticsearch Improper Access Control vulnerability

Moderate severity GitHub Reviewed Published May 17, 2022 to the GitHub Advisory Database • Updated Jan 6, 2025

Package

maven org.elasticsearch:elasticsearch (Maven)

Affected versions

< 1.4.0.Beta1

Patched versions

1.4.0.Beta1
Published by the National Vulnerability Database Jul 28, 2014
Published to the GitHub Advisory Database May 17, 2022
Reviewed Jan 6, 2025
Last updated Jan 6, 2025

Severity

Moderate

EPSS score

73.100%
(98th percentile)

Weaknesses

CVE ID

CVE-2014-3120

GHSA ID

GHSA-mrfm-jxgf-2h6v

Source code

Loading Checking history
See something to contribute? Suggest improvements for this vulnerability.