CVE-2026-4818HIGH 8.1EPSS p8.6%
CVE-2026-4818CVE-2026-4818
Description
In Search Guard FLX versions from 3.0.0 up to 4.0.1, there exists an issue which allows users without the necessary privileges to execute some management operations against data streams.
Scoring
| CVSS 3.1 | 8.1 (HIGH) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
| EPSS | 0.19% probability of exploitation · percentile 8.6% · 2026-06-19T12:03:05Z |
| Published | 2026-03-31 |
| Last modified | 2026-04-03 |
Underlying weaknesses· 2
References
2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Authorizationcwe-285 | 0% | live |
| Weakness | Missing Authorizationcwe-862 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.