← Back to CVE List

CVE-2024-12539

Published: 2024-12-17T21:15Z
Last Modified: 2025-02-04T15:16Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered where improper authorization controls affected certain queries that could allow a malicious actor to circumvent Document Level Security in Elasticsearch and get access to documents that their roles would normally not allow. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt