{"api_version":"1","generated_at":"2026-07-23T15:07:42+00:00","cve":"CVE-2021-31828","urls":{"html":"https://cve.report/CVE-2021-31828","api":"https://cve.report/api/cve/CVE-2021-31828.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2021-31828","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2021-31828"},"summary":{"title":"CVE-2021-31828","description":"An SSRF issue in Open Distro for Elasticsearch (ODFE) before 1.13.1.0 allows an existing privileged user to enumerate listening services or interact with configured resources via HTTP requests exceeding the Alerting plugin's intended scope.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2021-05-06 19:15:00","updated_at":"2021-05-18 13:26:00"},"problem_types":["CWE-918"],"metrics":[],"references":[{"url":"https://github.com/opendistro-for-elasticsearch/alerting/pull/353","name":"https://github.com/opendistro-for-elasticsearch/alerting/pull/353","refsource":"CONFIRM","tags":[],"title":"Support host deny list for Destinations by skkosuri-amzn · Pull Request #353 · opendistro-for-elasticsearch/alerting · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://opendistro.github.io/for-elasticsearch-docs/version-history/","name":"https://opendistro.github.io/for-elasticsearch-docs/version-history/","refsource":"MISC","tags":[],"title":"Version History - Open Distro for Elasticsearch Documentation","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://rotem-bar.com/ssrf-in-open-distro-for-elasticsearch-cve-2021-31828","name":"https://rotem-bar.com/ssrf-in-open-distro-for-elasticsearch-cve-2021-31828","refsource":"MISC","tags":[],"title":"CVE-2021-31828 - SSRF in Open Distro for ElasticSearch","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2021-31828","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2021-31828","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2021","cve_id":"31828","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"amazon","cpe5":"open_distro","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"elasticsearch","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2021-31828","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"An SSRF issue in Open Distro for Elasticsearch (ODFE) before 1.13.1.0 allows an existing privileged user to enumerate listening services or interact with configured resources via HTTP requests exceeding the Alerting plugin's intended scope."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"refsource":"CONFIRM","name":"https://github.com/opendistro-for-elasticsearch/alerting/pull/353","url":"https://github.com/opendistro-for-elasticsearch/alerting/pull/353"},{"refsource":"MISC","name":"https://opendistro.github.io/for-elasticsearch-docs/version-history/","url":"https://opendistro.github.io/for-elasticsearch-docs/version-history/"},{"refsource":"MISC","name":"https://rotem-bar.com/ssrf-in-open-distro-for-elasticsearch-cve-2021-31828","url":"https://rotem-bar.com/ssrf-in-open-distro-for-elasticsearch-cve-2021-31828"}]}},"nvd":{"publishedDate":"2021-05-06 19:15:00","lastModifiedDate":"2021-05-18 13:26:00","problem_types":["CWE-918"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":7.1,"baseSeverity":"HIGH"},"exploitabilityScore":2.8,"impactScore":4.2},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:N","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE","baseScore":5.5},"severity":"MEDIUM","exploitabilityScore":8,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:amazon:open_distro:*:*:*:*:*:elasticsearch:*:*","versionEndExcluding":"1.13.1.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2021","CveId":"31828","Ordinal":"207123","Title":"CVE-2021-31828","CVE":"CVE-2021-31828","Year":"2021"},"notes":[{"CveYear":"2021","CveId":"31828","Ordinal":"1","NoteData":"An SSRF issue in Open Distro for Elasticsearch (ODFE) before 1.13.1.0 allows an existing privileged user to enumerate listening services or interact with configured resources via HTTP requests exceeding the Alerting plugin's intended scope.","Type":"Description","Title":null},{"CveYear":"2021","CveId":"31828","Ordinal":"2","NoteData":"2021-05-06","Type":"Other","Title":"Published"},{"CveYear":"2021","CveId":"31828","Ordinal":"3","NoteData":"2021-05-12","Type":"Other","Title":"Modified"}]}}}