Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain read access to data they are not authorized to see.
References
| Link | Resource |
|---|---|
| https://search-guard.com/cve-advisory/ | Vendor Advisory |
| https://docs.search-guard.com/6.x-25/changelog-searchguard-6-x-24_3 | Release Notes Vendor Advisory |
Configurations
Information
Published : 2019-08-13 12:15
Updated : 2020-10-08 06:36
NVD link : CVE-2019-13415
Mitre link : CVE-2019-13415
JSON object : View
CWE
Products Affected
search-guard
- search_guard


