Eck Operator
Elastic · 4 CVEs
CVE-2026-78600
LOW
Incomplete Cleanup in Elastic Cloud on Kubernetes Leading to Unauthorized Cross-Namespace Credential Retention
Sep 2, 2026
CVE-2026-78609
MEDIUM
Incorrect Authorization in Elastic Cloud on Kubernetes Leading to Unauthorized Modification of Data
Sep 2, 2026
CVE-2026-72640
MEDIUM
Unintended Proxy or Intermediary in Elastic Cloud on Kubernetes Leading to Cross-Namespace Secret Disclosure
Aug 13, 2026
CVE-2026-72648
MEDIUM
Cleartext Storage of Sensitive Information in an Environment Variable in Elastic Cloud on Kubernetes Leading to Informa…
Aug 13, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-78600 | Incomplete Cleanup in Elastic Cloud on Kubernetes Leading to Unauthorized Cross-Namespace Credential Retention | LOW | 0.28% | Sep 2, 2026 |
| CVE-2026-78609 | Incorrect Authorization in Elastic Cloud on Kubernetes Leading to Unauthorized Modification of Data | MEDIUM | 0.15% | Sep 2, 2026 |
| CVE-2026-72640 | Unintended Proxy or Intermediary in Elastic Cloud on Kubernetes Leading to Cross-Namespace Secret Disclosure | MEDIUM | 0.38% | Aug 13, 2026 |
| CVE-2026-72648 | Cleartext Storage of Sensitive Information in an Environment Variable in Elastic Cloud on Kubernetes Leading to Information Disclosure | MEDIUM | 0.43% | Aug 13, 2026 |
Showing 1 to 4 of 4 CVEs