Known Vulnerabilities for Elastic Agent by Elastic
Listed below are 2 of the newest known vulnerabilities associated with "Elastic Agent" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78604 json | Incorrect Permission Assignment for Critical Resource (CWE-732) in Elastic Agent can lead to local privilege escalation via R... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-78583 json | Incorrect Authorization (CWE-863) in Kibana can lead to privilege escalation via Input Data Manipulation (CAPEC-153). Elastic... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-78582 json | Missing Authorization (CWE-862) in Kibana can lead to unauthorized deletion of data via Exploiting Incorrectly Configured Acc... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-72632 json | Observable Discrepancy (CWE-203) in Kibana Fleet can lead to information disclosure via Excavation (CAPEC-116). Fleet removes... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-72631 json | Improper Privilege Management (CWE-269) in Kibana Fleet can lead to privilege escalation via Privilege Escalation (CAPEC-233)... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2023-31421 json | It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Server did not verify whether ... | 7.5 - HIGH | 2023-10-26 | 2023-11-08 |