An issue was discovered whereby APM Server could log at ERROR level, a response from Elasticsearch indicating that indexing the document failed and that response would contain parts of the original document. Depending on the nature of the document that the APM Server attempted to ingest, this could lead to the insertion of sensitive or private information in the APM Server logs.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: elastic

Published: 2024-02-07T21:37:45.908Z

Updated: 2024-08-01T23:06:24.582Z

Reserved: 2024-01-16T21:31:26.030Z

Link: CVE-2024-23448

cve-icon Vulnrichment

Updated: 2024-08-01T23:06:24.582Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-07T22:15:09.987

Modified: 2024-02-15T15:39:14.317

Link: CVE-2024-23448

cve-icon Redhat

No data.