Known Vulnerabilities for Apm Agent by Elastic
Listed below are 3 of the newest known vulnerabilities associated with "Apm Agent" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89332 json | Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE before version 0.8.... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89049 json | A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88939 json | knowns through 0.33.0 exempts the project.set action from permission guard checks unconditionally, allowing read-only agent s... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88938 json | knowns through 0.33.0 fails to confine the path argument of the code.find MCP tool to the project root, allowing AI agent ses... | Not Provided | 2026-09-10 | 2026-09-11 |
| CVE-2026-88866 json | WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-88062 json | OmniRoute is an open-source AI gateway providing a single endpoint for multiple model providers. In 3.8.49 and earlier, the O... | Not Provided | 2026-09-10 | 2026-09-11 |
| CVE-2026-87913 json | A missing S3 bucket ownership verification in the AWS Security Agent MCP server before 0.2.0 version might allow remote attac... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87912 json | A missing S3 bucket ownership verification in the AWS Security Agent plugin in Amazon aws-agents-for-devsecops before 1.1.0 m... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87859 json | morgan is an HTTP request logger middleware for Node.js. In versions before 1.12.1, its escapeLogField() function does not es... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-86996 json | n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the workflow setting named This workflow can ... | Not Provided | 2026-09-08 | 2026-09-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Elastic | Apm Agent | 5.2.0 | |||
| Application | Elastic | Apm Agent | 5.1.2 | |||
| Application | Elastic | Apm Agent | 5.1.1 | |||
| Application | Elastic | Apm Agent | 5.1.0 | |||
| Application | Elastic | Apm Agent | 5.0.0 | |||
| Application | Elastic | Apm Agent | 4.2.2 | |||
| Application | Elastic | Apm Agent | 4.2.1 | |||
| Application | Elastic | Apm Agent | 4.2.0 | |||
| Application | Elastic | Apm Agent | 4.1.0 | |||
| Application | Elastic | Apm Agent | 4.0.3 | |||
| Application | Elastic | Apm Agent | 4.0.2 | |||
| Application | Elastic | Apm Agent | 4.0.1 | |||
| Application | Elastic | Apm Agent | 4.0.0 | |||
| Application | Elastic | Apm Agent | 3.0.5 | |||
| Application | Elastic | Apm Agent | 3.0.4 | |||
| Application | Elastic | Apm Agent | 3.0.3 | |||
| Application | Elastic | Apm Agent | 3.0.2 | |||
| Application | Elastic | Apm Agent | 3.0.1 | |||
| Application | Elastic | Apm Agent | 3.0.0 | |||
| Application | Elastic | Apm Agent | 2.2.1 |