Known Vulnerabilities for Apm Server by Elastic
Listed below are 1 of the newest known vulnerabilities associated with "Apm Server" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-68579 json | FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read ... | Not Provided | 2026-08-02 | 2026-08-02 |
| CVE-2026-67607 json | LightFTP 2.3.1 contains a race condition vulnerability that allows remote attackers to crash the server by racing a fresh con... | Not Provided | 2026-07-31 | 2026-07-31 |
| CVE-2026-67530 json | WACRM is a self-hostable CRM template for WhatsApp. In 0.7.0 and earlier, the automation send_webhook action in src/lib/autom... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67435 json | linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to version... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-67432 json | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Transport... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-67431 json | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Transport... | Not Provided | 2026-07-29 | 2026-07-30 |
| CVE-2026-67430 json | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Transport... | Not Provided | 2026-07-29 | 2026-07-30 |
| CVE-2026-67357 json | ArcadeDB versions before 26.7.3 contain an information disclosure vulnerability in the MCP get_server_settings tool that leak... | Not Provided | 2026-08-02 | 2026-08-02 |
| CVE-2026-67356 json | ArcadeDB before 26.7.3 binds the real LocalDatabase object into JavaScript trigger contexts with HostAccess.ALL, allowing sch... | Not Provided | 2026-08-02 | 2026-08-02 |
| CVE-2026-67354 json | guzzlehttp/guzzle versions before 7.15.1 contain an information disclosure vulnerability in RedirectMiddleware. When the opti... | Not Provided | 2026-08-01 | 2026-08-01 |