Known Vulnerabilities for Apm Server by Elastic
Listed below are 1 of the newest known vulnerabilities associated with "Apm Server" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40036 json | Unfurl before 2026.04 contains an unbounded zlib decompression vulnerability in parse_compressed.py that allows remote attac... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39890 json | PraisonAI is a multi-agent teams system. Prior to 4.5.115, the AgentService.loadAgentFromFile method uses the js-yaml library... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39889 json | PraisonAI is a multi-agent teams system. Prior to 4.5.115, the A2U (Agent-to-User) event stream server in PraisonAI exposes a... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39885 json | FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). Prior to 2.3.0, the mcp-from-openapi library u... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39881 json | Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in Vim's netbeans inter... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39865 json | Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.13.2, Axios HTTP/2 session cleanup logic contain... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39864 json | Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.0.5 and 5.8.7, an out-of-bounds read in the a... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39863 json | Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.1.1, 6.0.6, and 5.8.8, an out-of-bounds acces... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39695 json | Server-Side Request Forgery (SSRF) vulnerability in podigee Podigee podigee allows Server Side Request Forgery.This issue aff... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39670 json | Server-Side Request Forgery (SSRF) vulnerability in Brecht Visual Link Preview visual-link-preview allows Server Side Request... | Not Provided | 2026-04-08 | 2026-04-08 |