CVE-2025-13653

Publication date

2025-12-01 18:02:00

Family

floragunn

State

PUBLISHED

Description

In Search Guard FLX versions from 3.1.0 up to 4.0.0 with enterprise modules being disabled, there exists an issue which allows authenticated users to use specially crafted requests to read documents from data streams without having the respective privileges.