elasticsearch-7
Chainguard
5.9
CVSS V3
Status
Justification
Impact
Elasticsearch retains an older library version for OpenSAML compatibility but does not use Guava serialization, making it unaffected by this vulnerability. For more details, see the GitHub comment https://github.com/elastic/elasticsearch/issues/50395#issuecomment-1145561826
Status
Status
Fixed version
7.17.14-r2