VDB
CVE-2021-22147
CVE-2021-22147
PUBLISHED
Elasticsearch before 7.14.0 did not apply document and field level security to searchable snapshots. This could lead to an authenticated user gaining access to information that they are unauthorized to view.
EPSS 1.04% · 61.3th percentile
Risk Scores
EPSS Score
1.04%
61.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | elasticsearch | 7.11.0, 7.11.0 |
| Bitnami | elasticsearch | 7.11.0 |
Timeline
- Aug 4, 2021 CVE Published
- Sep 16, 2021 EPSS Score
- Oct 11, 2021 CVE Updated
- Nov 13, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 8, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 4, 2022 EPSS Score
- Aug 28, 2022 EPSS Score
- Oct 25, 2022 EPSS Score
- Dec 21, 2022 EPSS Score