CVE-2025-37727 | Elastic Elasticsearch up to 7.17.29/8.18.7/8.19.4/9.0.7/9.1.4 Reindex API log file (EUVD-2025-33703 / Nessus ID 269983)
A vulnerability has been found in Elastic Elasticsearch up to 7.17.29/8.18.7/8.19.4/9.0.7/9.1.4 and classified as problematic. The affected element is an unknown function of the component Reindex API. This manipulation causes sensitive information in log files.
This vulnerability appears as CVE-2025-37727. The attacker needs to be present on the local network. There is no available exploit.