opensearch-project Summary
Latest vulnerabilities published by opensearch-project
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Vulnerability in OpenTelemetry Logs Source Affects Custom Authentication Plugins
CVE-2024-55886Opensearch-projectData-prepper6.9MEDIUMSpecially Crafted Parameters Can Lead to External Redirect on Login
CVE-2024-43794Opensearch-projectSecurity-dashboards-pl...6.1MEDIUMUnintended Access to Private Tenant Resources in OpenSearch Dashboards Reports
CVE-2024-39900Opensearch-projectReporting5.4MEDIUMUnintended Access to Private Tenant Resources in OpenSearch Observability
CVE-2024-39901Opensearch-projectObservability5.4MEDIUMOpenSearch Issue with tenant read-only permissions
CVE-2023-45807Opensearch-projectSecurity5.4MEDIUMOpenSearch issue with fine-grained access control during extremely rare race conditions
CVE-2023-31141Opensearch-projectSecurity4.8MEDIUMTime discrepancy in authentication responses in OpenSearch
CVE-2023-25806Opensearch-projectSecurity5.3MEDIUMIssue in Anomaly Detection with document and field level rules in numerical feature aggregations
CVE-2023-23933Opensearch-projectAnomaly-detection4.3MEDIUMIssue with whitespace in JWT roles in OpenSearch
CVE-2023-23612Opensearch-projectSecurity4.7MEDIUMField-level security issue with .keyword fields in OpenSearch
CVE-2023-23613Opensearch-projectSecurity5.7MEDIUMIncorrect Error Handling Allowed Partial File Reads Over REST API in OpenSearch
CVE-2022-41917Opensearch-projectOpensearch4.3MEDIUMIssue with fine-grained access control of indices backing data streams
CVE-2022-41918Opensearch-projectSecurity6.3MEDIUMOpenSearch Notifications is vulnerable to Server-Side Request Forgery (SSRF)
CVE-2022-41906Opensearch-projectNotifications7.7HIGHOpenSearch vulnerable to Improper Authorization of Index Containing Sensitive Information
CVE-2022-35980Opensearch-projectSecurity7.5HIGHUnsafe YAML deserialization in opensearch-ruby
CVE-2022-31115Opensearch-projectOpensearch-ruby8.8HIGH
12 December 2024
23 August 2024
9 July 2024
16 October 2023
8 May 2023
2 March 2023
3 February 2023
26 January 2023
15 November 2022
11 November 2022
12 August 2022
30 June 2022
No more vulnerabilities to load.