CVE-2023-31416

Publication date

2023-10-26 18:46:21

Family

elastic

State

PUBLISHED

Description

Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requests to an APM Server being accepted and the data ingested into this APM deployment.