Elastic Fleet Server
cpe:2.3:a:elastic:elastic_fleet_server:*:*:*:*:*:*:*, +1 more
- >= 8.13.0, <= 8.15.0
A vulnerability exists in Elastic Fleet Server versions 8.13.0 prior to 8.15.0, where Fleet policies containing sensitive information could be inadvertently logged at INFO and ERROR levels. The type of sensitive information exposed varies based on the enabled integrations.
This vulnerability could lead to unauthorized exposure of sensitive information through application logs.
Users are advised to upgrade to Elastic Fleet Server version 8.15.0.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.