Known Vulnerabilities for Eck Operator by Elastic
Listed below are 10 of the newest known vulnerabilities associated with "Eck Operator" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100853 json | In AzuraCast before 0.23.8, the public On-Demand download endpoint fails to verify playlist-level access controls, allowing u... | Not Provided | 2026-09-27 | 2026-09-27 |
| CVE-2026-100671 json | Grav is a flat-file CMS. In versions 2.0.19 through 2.0.24 — and in 2.0.0 through 2.0.18 and 1.7.x only where content Twig ... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100670 json | Grav CMS 2.0.14 through 2.0.24 contains a privilege escalation vulnerability in the group and account blueprints. The access ... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100653 json | vLLM is an inference and serving engine for large language models. In versions from 0.22.1 through 0.28.0, the operator-suppl... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100597 json | OpenClaw (npm package 'openclaw') before 2026.7.1 is vulnerable to a time-of-check time-of-use race condition in OpenShell lo... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100588 json | OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administrator scope requirement on browser control whe... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100583 json | OpenClaw Discord versions before 2026.7.1 contain an authorization bypass vulnerability in guild metadata read actions that a... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100582 json | OpenClaw channel plugins (@openclaw/msteams, @openclaw/feishu, @openclaw/matrix, and @openclaw/googlechat) before 2026.8.1 do... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100581 json | OpenClaw for iOS before 2026.8.11 stores Gateway credentials as cleartext JSON in App Group UserDefaults instead of the devic... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100580 json | OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-facing cron tool: a mixed-... | Not Provided | 2026-09-26 | 2026-09-26 |