PT-2026-29280 · Elastic · Search Guard Flx

Published

2026-03-31

·

Updated

2026-03-31

·

CVE-2026-4818

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Search Guard FLX versions 3.0.0 through 4.0.1
Description An issue exists in Search Guard FLX that allows users lacking appropriate permissions to perform certain management operations on data streams.
Recommendations Update Search Guard FLX to a version newer than 4.0.1.

Fix

Improper Authorization

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-4818

Affected Products

Search Guard Flx