Security Advisory

CVE-2025-25013

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-08 22:16:00
Last updated 2025-04-09 19:28:32
Assigner elastic
State PUBLISHED

Description

Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as API keys and tokens via automatic transmission of unfiltered environment variables to the stack.