CVE-2023-46673: It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.

Overview

Severity
Medium (CVSS 6.5)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploit Status
Not Exploited
Patch Tuesday
2023-Nov
Released
2026-08-07
EPSS Score
0.84% (percentile: 56.0%)

Affected Products (1)

Other

  • 20188-17084

Revision History

  • 2026-08-07: Information published.