Vulnerabilities > Elastic > Elastic APP Search > 7.11.1

DATE CVE VULNERABILITY TITLE RISK
2021-05-13 CVE-2021-22140 XXE vulnerability in Elastic APP Search 7.11.0/7.11.1
Elastic App Search versions after 7.11.0 and before 7.12.0 contain an XML External Entity Injection issue (XXE) in the App Search web crawler beta feature.
network
low complexity
elastic CWE-611
5.0