Beveiligingsadvies

CVE-2026-33467

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-04-28 21:15:24
Laatst bijgewerkt 2026-04-29 15:10:02
Toegewezen door elastic
CVSS-score 5.9
Status PUBLISHED

Beschrijving

Improper Verification of Cryptographic Signature (CWE-347) in Elastic Package Registry could allow an attacker positioned to intercept network traffic, or to otherwise influence the contents served to a self-hosted registry, to substitute a tampered package without the integrity check failing closed.