Elastic Apm Server vulnerabilities
5 known vulnerabilities affecting elastic/apm_server.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-0712HIGHCVSS 7.0≥ 8.16, ≤ 8.16.2≥ 8.17, ≤ 8.17.02025-07-30
CVE-2025-0712 [HIGH] CWE-427 CVE-2025-0712: An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via I
An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.
cvelistv5nvd
CVE-2024-11994MEDIUMCVSS 5.7≥ 8.0.0, < 8.16.12025-05-01
CVE-2024-11994 [MEDIUM] CWE-200 CVE-2024-11994: APM server logs could contain parts of the document body from a partially failed bulk index request.
APM server logs could contain parts of the document body from a partially failed bulk index request. Depending on the nature of the document, this could disclose sensitive information in APM Server error logs.
cvelistv5nvd
CVE-2024-37286MEDIUMCVSS 6.5fixed in 8.14.02024-08-03
CVE-2024-37286 [MEDIUM] CWE-532 CVE-2024-37286: APM server logs contain document body from a partially failed bulk index request. For example, in ca
APM server logs contain document body from a partially failed bulk index request. For example, in case of unavailable_shards_exception for a specific document, since the ES response line contains the document body, and that APM server logs the ES response line on error, the document is effectively logged.
nvd
CVE-2024-23448HIGHCVSS 7.5fixed in 8.12.1≥ 8.12, < 8.12.12024-02-07
CVE-2024-23448 [HIGH] CWE-532 CVE-2024-23448: An issue was discovered whereby APM Server could log at ERROR level, a response from Elasticsearch i
An issue was discovered whereby APM Server could log at ERROR level, a response from Elasticsearch indicating that indexing the document failed and that response would contain parts of the original document. Depending on the nature of the document that the APM Server attempted to ingest, this could lead to the insertion of sensitive or private informa
cvelistv5nvd
CVE-2023-31421HIGHCVSS 7.5≥ 8.0.0, ≤ 8.9.2v8.0.0, 8.9.22023-10-26
CVE-2023-31421 [HIGH] CWE-295 CVE-2023-31421: It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Serve
It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Server did not verify whether the server certificate is valid for the target IP address; however, certificate signature validation is still performed. More specifically, when the client is configured to connect to an IP address (instead of a hostname) it doe
cvelistv5nvd