Miggo Logo

CVE-2023-23613: Field-level security issue with .keyword fields in OpenSearch

5.7

CVSS Score
3.1

Basic Information

EPSS Score
0.48216%
Published
1/24/2023
Updated
1/16/2025
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
org.opensearch.plugin:opensearch-securitymaven< 1.3.81.3.8
org.opensearch.plugin:opensearch-securitymaven>= 2.0.0, < 2.5.02.5.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

### **visory titl*: *i*l*-l*v*l s**urity issu* wit* .k*ywor* *i*l*s ### *****t** v*rsions: Op*nS**r** *.*.*-*.*.* *n* *.*.*-*.*.* ### P*t**** v*rsions: Op*nS**r** *.*.* *n* *.*.* ### Imp**t: T**r* is *n issu* in t** impl*m*nt*tion o* *i*l*-l*v*l s

Reasoning

No *n*lysis *v*il**l*