elasticsearch-7
Chainguard
7.1
CVSS V3
Status
Justification
Impact
Elasticsearch retains an older library version for OpenSAML compatibility but does not use Guava temporary directory function FileBakcedOutputStream, making it unaffected by this vulnerability. For more detail s about the reasoning of using Guava, see the GitHub comment https://github.com/elastic/elasticsearch/issues/50395#issuecomment-1145561826
Status
Status
Fixed version
7.17.14-r2