{"api_version":"v1","generated_at":"2026-10-08T18:40:00+00:00","product":{"cve_count":87,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-elastic-elasticsearch-ea56c56d6651","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/elasticsearch","name":"elasticsearch","next_cursor":"djE6NTA","observations":[{"affected":"Elasticsearch: 8.13.0 \u2264 8.19.22, 9.0.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-103009","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103009","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:52:13.370Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:53.261Z"},{"affected":"Elasticsearch: 8.12.0 \u2264 8.19.22, 9.0.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-103008","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103008","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:52:34.232Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:51.863Z"},{"affected":"Elasticsearch: 8.16.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-103007","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103007","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-08T03:55:50.720Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:50.520Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.20, 9.0.0 \u2264 9.4.5, 9.5.0 \u2264 9.5.1","affected_versions_present":true,"cve_id":"CVE-2026-103006","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103006","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:53:22.509Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:49.222Z"},{"affected":"Elasticsearch: 8.12.0 \u2264 8.19.22, 9.0.0 \u2264 9.3.8, 9.4.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-103005","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103005","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:53:45.426Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:47.862Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.22, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.2","affected_versions_present":true,"cve_id":"CVE-2026-102411","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102411","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:54:55.656Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:43.529Z"},{"affected":"Elasticsearch: 9.2.0 \u2264 9.2.8, 9.3.0 \u2264 9.3.8, 9.4.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-102409","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102409","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:55:40.589Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:40.592Z"},{"affected":"Elasticsearch: 8.19.0 \u2264 8.19.21, 9.1.0 \u2264 9.3.8, 9.4.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-102408","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102408","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:56:06.441Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:39.196Z"},{"affected":"Elasticsearch: 7.17.5 \u2264 7.17.29, 8.2.2 \u2264 8.19.18, 9.0.0 \u2264 9.3.7, 9.4.0 \u2264 9.4.3","affected_versions_present":true,"cve_id":"CVE-2026-102407","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102407","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:56:32.845Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:37.820Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.22, 9.0.0 \u2264 9.4.7, 9.5.0 \u2264 9.5.4","affected_versions_present":true,"cve_id":"CVE-2026-102404","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102404","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T19:57:23.769Z","patch_url":"","primary_source":"","published":"2026-10-06T19:31:34.716Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.2","affected_versions_present":true,"cve_id":"CVE-2026-94408","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94408","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T22:59:01.550Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-22-9-4-7-9-5-3-security-update-esa-2026-184/390688","primary_source":"","published":"2026-09-26T20:42:27.006Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-94397","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94397","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T22:59:19.177Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-22-9-4-7-9-5-4-security-update-esa-2026-183/390687","primary_source":"","published":"2026-09-26T20:42:25.311Z"},{"affected":"Elasticsearch: 9.2.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-94396","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94396","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T22:59:33.605Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-9-4-7-9-5-4-security-update-esa-2026-182/390686","primary_source":"","published":"2026-09-26T20:42:23.643Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-94399","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94399","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T23:00:09.316Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-22-9-4-7-9-5-4-security-update-esa-2026-180/390684","primary_source":"","published":"2026-09-26T20:42:20.048Z"},{"affected":"Elasticsearch: 8.12.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-94398","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-94398","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T23:00:24.751Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-22-9-4-7-9-5-4-security-update-esa-2026-179/390683","primary_source":"","published":"2026-09-26T20:42:18.354Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.21, 9.0.0 \u2264 9.4.6, 9.5.0 \u2264 9.5.3","affected_versions_present":true,"cve_id":"CVE-2026-82300","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-82300","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-10-01T12:54:14.653Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-22-9-4-7-9-5-4-security-update-esa-2026-176/390682","primary_source":"","published":"2026-09-26T20:42:16.702Z"},{"affected":"Elasticsearch: 8.0.0 \u2264 8.19.20, 9.0.0 \u2264 9.4.5, 9.5.0 \u2264 9.5.2","affected_versions_present":true,"cve_id":"CVE-2026-82294","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-82294","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-26T23:00:58.356Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-21-9-4-6-9-5-3-security-update-esa-2026-170/390681","primary_source":"","published":"2026-09-26T20:42:15.051Z"},{"affected":"8.0.0 \u2264 8.19.18; 9.0.0 \u2264 9.3.7; 9.4.0 \u2264 9.4.3; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-78607","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-78607","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-01T19:41:19.721Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-19-9-3-8-9-4-4-9-5-1-security-update-esa-2026-143/390094","primary_source":"","published":"2026-09-01T19:20:34.174Z"},{"affected":"8.18.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-78605","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-78605","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-01T19:41:50.325Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-141/390092","primary_source":"","published":"2026-09-01T19:20:29.342Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72649","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72649","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-02T03:55:56.675Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-114/390087","primary_source":"","published":"2026-09-01T19:20:17.955Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.2.8","affected_versions_present":true,"cve_id":"CVE-2026-56143","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56143","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-01T19:37:54.442Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-3-0-security-update-esa-2026-47/390084","primary_source":"","published":"2026-09-01T19:20:10.864Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72636","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72636","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:26:48.047Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-security-update-esa-2026-133/389499","primary_source":"","published":"2026-08-13T19:14:03.131Z"},{"affected":"8.19.0 \u2264 8.19.19; 9.4.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72642","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72642","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-14T03:56:07.844Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-123/389504","primary_source":"","published":"2026-08-13T19:13:45.545Z"},{"affected":"8.19.0 \u2264 8.19.19; 9.3.0 \u2264 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72639","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72639","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:28:15.250Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-120/389503","primary_source":"","published":"2026-08-13T19:13:40.634Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72638","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72638","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:28:28.205Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-security-update-esa-2026-119/389498","primary_source":"","published":"2026-08-13T19:13:38.304Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72647","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72647","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:28:40.601Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-118/389497","primary_source":"","published":"2026-08-13T19:13:36.195Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72645","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72645","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:28:53.313Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-116/389502","primary_source":"","published":"2026-08-13T19:13:33.371Z"},{"affected":"8.11.0 \u2264 8.17.9","affected_versions_present":true,"cve_id":"CVE-2026-72656","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72656","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:29:32.406Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-18-0-9-0-0-security-update-esa-2026-111/389495","primary_source":"","published":"2026-08-13T19:13:26.761Z"},{"affected":"8.19.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72679","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72679","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:34:08.185Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-security-update-esa-2026-81/389501","primary_source":"","published":"2026-08-13T19:11:04.802Z"},{"affected":"8.19.0 \u2264 8.19.19; 9.4.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72678","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72678","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:34:20.569Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-80/389507","primary_source":"","published":"2026-08-13T19:11:02.710Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72687","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72687","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:34:33.600Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-79/389506","primary_source":"","published":"2026-08-13T19:11:00.432Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4; 9.5.0","affected_versions_present":true,"cve_id":"CVE-2026-72686","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72686","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:34:46.089Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-9-5-1-security-update-esa-2026-78/389505","primary_source":"","published":"2026-08-13T19:10:58.187Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72685","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72685","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:34:58.606Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-security-update-esa-2026-77/389500","primary_source":"","published":"2026-08-13T19:10:56.140Z"},{"affected":"8.0.0 \u2264 8.19.19; 9.0.0 \u2264 9.4.4","affected_versions_present":true,"cve_id":"CVE-2026-72684","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72684","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:35:10.991Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-20-9-4-5-security-update-esa-2026-76/389508","primary_source":"","published":"2026-08-13T19:10:53.550Z"},{"affected":"5.0.0 \u2264 8.19.18; 9.3.0 \u2264 9.3.7; 9.4.0 \u2264 9.4.3","affected_versions_present":true,"cve_id":"CVE-2026-72683","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72683","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-13T20:35:24.324Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-19-9-3-8-9-4-4-security-update-esa-2026-75/389496","primary_source":"","published":"2026-08-13T19:10:51.461Z"},{"affected":"9.4.0 \u2264 9.4.3; 9.0.0 \u2264 9.3.7; 8.0.0 \u2264 8.19.18","affected_versions_present":true,"cve_id":"CVE-2026-63263","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63263","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-22T13:07:01.561Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-19-9-3-8-9-4-4-security-update-esa-2026-74/388577","primary_source":"","published":"2026-07-21T23:10:49.155Z"},{"affected":"9.4.0 \u2264 9.4.3; 9.3.0 \u2264 9.3.7; 8.19.0 \u2264 8.19.18","affected_versions_present":true,"cve_id":"CVE-2026-63144","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63144","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-22T13:27:01.544Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-19-9-3-8-9-4-4-security-update-esa-2026-68/388571","primary_source":"","published":"2026-07-21T22:26:43.138Z"},{"affected":"9.0.0 \u2264 9.3.7; 9.4.0 \u2264 9.4.3; 8.0.0 \u2264 8.19.18","affected_versions_present":true,"cve_id":"CVE-2026-63140","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63140","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-22T19:40:22.260Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-19-9-3-8-9-4-4-security-update-esa-2026-64/388565","primary_source":"","published":"2026-07-21T21:04:01.143Z"},{"affected":"8.0.0 \u2264 8.19.14; 9.3.0 \u2264 9.3.3; 9.0.0 \u2264 9.2.8","affected_versions_present":true,"cve_id":"CVE-2026-63136","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63136","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-22T19:41:00.574Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-15-9-2-9-9-3-4-security-update-esa-2026-60/388559","primary_source":"","published":"2026-07-21T20:20:07.409Z"},{"affected":"9.4.0 \u2264 9.4.3; 8.0.0 \u2264 8.19.17; 9.0.0 \u2264 9.3.6","affected_versions_present":true,"cve_id":"CVE-2026-56145","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56145","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-22T18:25:22.708Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-18-9-3-7-9-4-4-security-update-esa-2026-57/388556","primary_source":"","published":"2026-07-21T20:04:47.033Z"},{"affected":"9.4.0 \u2264 9.4.3; 9.0.0 \u2264 9.3.7; 8.12.0 \u2264 8.19.18","affected_versions_present":true,"cve_id":"CVE-2026-56144","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56144","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-26T11:16:24.249Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-18-9-3-7-9-4-4-security-update-esa-2026-56/388555","primary_source":"","published":"2026-07-21T19:49:43.992Z"},{"affected":"8.0.0 \u2264 8.14.3; 7.0.0 \u2264 7.17.23","affected_versions_present":true,"cve_id":"CVE-2026-49090","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49090","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-01T17:56:42.069Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-7-17-24-8-15-0-security-update-esa-2026-52","primary_source":"","published":"2026-07-01T17:15:54.359Z"},{"affected":"9.4.0 \u2264 9.4.2; 9.0.0 \u2264 9.3.5; 8.0.0 \u2264 8.19.16","affected_versions_present":true,"cve_id":"CVE-2026-56149","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56149","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-01T17:25:09.581Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-17-9-3-6-9-4-3-security-update-esa-2026-43","primary_source":"","published":"2026-07-01T16:21:24.437Z"},{"affected":"9.4.0 \u2264 9.4.2; 9.0.0 \u2264 9.3.5; 8.0.0 \u2264 8.19.16","affected_versions_present":true,"cve_id":"CVE-2026-56148","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56148","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-01T17:25:09.726Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-17-9-3-6-9-4-3-security-update-esa-2026-42","primary_source":"","published":"2026-07-01T16:17:05.998Z"},{"affected":"7.0.0 \u2264 7.17.29; 8.0.0 \u2264 8.19.7; 9.0.0 \u2264 9.1.7; 9.2.0 \u2264 9.2.1","affected_versions_present":true,"cve_id":"CVE-2025-68390","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68390","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-12-19T15:36:02.809Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-8-9-1-8-and-9-2-2-security-update-esa-2025-37/384185","primary_source":"","published":"2025-12-18T22:17:41.672Z"},{"affected":"Elasticsearch: 7.0.0 \u2264 7.17.29, 8.0.0 \u2264 8.19.8, 9.0.0 \u2264 9.1.8, 9.2.0 \u2264 9.2.2","affected_versions_present":true,"cve_id":"CVE-2025-68384","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68384","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-12-19T15:19:41.135Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-9-9-1-9-and-9-2-3-security-update-esa-2025-33/384181","primary_source":"","published":"2025-12-18T22:04:50.131Z"},{"affected":"Elasticsearch: 7.0.0 \u2264 7.17.29, 8.0.0 \u2264 8.19.7, 9.0.0 \u2264 9.1.7, 9.2.0 \u2264 9.2.1","affected_versions_present":true,"cve_id":"CVE-2025-37731","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-37731","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:07:40.327Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-19-8-9-1-8-and-9-2-2-security-update-esa-2025-27/384063","primary_source":"","published":"2025-12-15T10:42:21.840Z"},{"affected":"7.0.0 \u2264 7.17.29; 8.0.0 \u2264 8.18.7; 8.19.0 \u2264 8.19.4; 9.0.0 \u2264 9.0.7; 9.1.0 \u2264 9.1.4","affected_versions_present":true,"cve_id":"CVE-2025-37727","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-37727","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-10T16:34:36.812Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-8-18-8-8-19-5-9-0-8-9-1-5-security-update-esa-2025-18/382453","primary_source":"","published":"2025-10-10T09:56:15.234Z"},{"affected":"7.17.0 < 7.17.25; 8.0.0 < 8.16.0","affected_versions_present":true,"cve_id":"CVE-2024-52979","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-52979","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-05-01T13:25:55.553Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-7-17-25-and-8-16-0-security-update-esa-2024-40/377709","primary_source":"","published":"2025-05-01T13:13:07.426Z"},{"affected":"7.17.0 \u2264 7.17.23; 8.0 \u2264 8.15.0","affected_versions_present":true,"cve_id":"CVE-2024-52981","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-52981","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-08T19:58:51.000Z","patch_url":"https://discuss.elastic.co/t/elasticsearch-7-17-24-and-8-15-1-security-update-esa-2024-37/376924","primary_source":"","published":"2025-04-08T16:54:16.668Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Elastic"}}
