Known Vulnerabilities for Maps Server by Elastic
Listed below are 1 of the newest known vulnerabilities associated with "Maps Server" by "Elastic".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102716 json | An unauthenticated client can drain the RTSP server's packet pool with a couple of dozen requests that carry a Session hea... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-93477 json | Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in ash-project ash allows a user... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-89666 json | In the Linux kernel, the following vulnerability has been resolved: nfsd: reject out-of-range nseconds in NFSv3 SETATTR and ... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-78602 json | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) in Elastic Maps Server can lead to in... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-71256 json | nanoMODBUS through v1.23.0 contains an out-of-bounds stack read leading to a wild-pointer write in nmbs_read_device_identific... | Not Provided | 2026-08-05 | 2026-08-10 |
| CVE-2026-63621 json | Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-55848 json | mapfish-print is a component of MapFish for printing templated cartographic maps. Prior to 3.28.30, 3.30.32, 3.31.24, 3.33.16... | Not Provided | 2026-08-28 | 2026-08-31 |
| CVE-2026-54508 json | TREK is a collaborative travel planner. Prior to 3.1.0, TREK validates only the initial URL before native redirect following ... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-46457 json | Improper Input Validation vulnerability in Apache Camel NATS component. The camel-nats component maps inbound NATS message h... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-18465 json | The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its AJAX actions, which is also a... | Not Provided | 2026-08-09 | 2026-08-10 |