In Search Guard FLX versions from 1.0.0 up to 4.0.1, the audit logging feature might log user credentials from users logging into Kibana.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 31 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Search Guard FLX versions from 1.0.0 up to 4.0.1, the audit logging feature might log user credentials from users logging into Kibana. | |
| Title | Search Guard audit logs can contain under certain conditions user credentials | |
| Weaknesses | CWE-522 CWE-532 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: floragunn
Published:
Updated: 2026-03-31T14:57:56.792Z
Reserved: 2026-03-25T13:44:37.576Z
Link: CVE-2026-4819
No data.
Status : Received
Published: 2026-03-31T16:16:34.730
Modified: 2026-03-31T16:16:34.730
Link: CVE-2026-4819
No data.
OpenCVE Enrichment
No data.