VYPR

Elasticsearch machine learning

by Elastic

Source repositories

CVEs (1)

  • CVE-2026-72649HigSep 1, 2026
    risk 0.50cvss 8.8epss 0.01

    Deserialization of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to remote code execution via Object Injection (CAPEC-586). A specially crafted trained model artifact could cause attacker-controlled logic to execute with a materially broader…