VendorsElasticapm_serverany version
Vulnerabilities

Elastic APM Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-23448
APM Server Insertion of Sensitive Information into Log File
Published 2024-02-07 · Modified
7.5EPSS 0.007
CVE-2023-31421
Beats, Elastic Agent, APM Server, and Fleet Server Improper Certificate Validation issue
Published 2023-10-26 · Modified
7.5EPSS 0.003
CVE-2024-37286
APM Server Insertion of Sensitive Information into Log File
Published 2024-08-03 · Analyzed
6.5EPSS 0.005
CVE-2023-31416
Elastic Cloud on Kubernetes (ECK) secret token configuration issue
Published 2023-10-26 · Modified
5.3EPSS 0.004
CVE-2026-78594
Improper Handling of Highly Compressed Data in APM Server Leading to Persistent Denial of Service
Published 2026-09-02 · Analyzed
4.9EPSS 0.005