CVE-2025-37727

All FrameworksElasticsearchCWE-532CVE-2025-37727

CVE-2025-37727

State: PUBLISHED · Published: 2025-10-10 · Updated: 2025-10-10 · Assigner: elastic
Description
Insertion of sensitive information in log file in Elasticsearch can lead to loss of confidentiality under specific preconditions when auditing requests to the reindex API https://www.elastic.co/docs/api/doc/elasticsearch/operation/operation-reindex
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/37xxx/CVE-2025-37727.json