Vulnerabilities (CVE)

Filtered by vendor Elasticsearch Subscribe
Filtered by product Logstash
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-5619 2 Elastic, Elasticsearch 2 Logstash, Logstash 2019-06-17 4.3 MEDIUM 5.9 MEDIUM
Logstash 1.4.x before 1.4.5 and 1.5.x before 1.5.4 with Lumberjack output or the Logstash forwarder does not validate SSL/TLS certificates from the Logstash server, which might allow attackers to obtain sensitive information via a man-in-the-middle attack.