Vulnerabilities > Elastic > Elastic Cloud ON Kubernetes

DATE CVE VULNERABILITY TITLE RISK
2023-10-26 CVE-2023-31416 Unspecified vulnerability in Elastic APM Server and Elastic Cloud on Kubernetes
Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0.
network
low complexity
elastic
5.3
2020-06-03 CVE-2020-7010 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Elastic Cloud on Kubernetes
Elastic Cloud on Kubernetes (ECK) versions prior to 1.1.0 generate passwords using a weak random number generator.
network
low complexity
elastic CWE-335
7.5