Impact
Elastic’s Elasticsearch product has a flaw where HTTP requests are interpreted inconsistently, a form of HTTP Request Smuggling (CWE‑444). This weakness can allow a network attacker, under specific proxy deployment configurations, to read confidential responses that were meant for other authenticated users. The vulnerability directly exposes sensitive information and can undermine the confidentiality of data exchanged with the Elasticsearch service.
Affected Systems
The affected product is Elastic:Elasticsearch. No specific version details are listed in the available information, so all deployments of Elasticsearch should be reviewed for this weakness.
Risk and Exploitability
The CVSS score of 5.9 indicates a moderate severity risk. Because the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, the current exploitation risk is unclear, but the attack vector is inferred to be a network attacker exploiting proxy configuration settings that allow HTTP request smuggling. When the described conditions are met, the attacker can obtain data from other users, making the impact significant even though the mathematical score is moderate.
OpenCVE Enrichment