Elasticsearch: 9.3.8 → 9.4.5
Elastic · upgrade impact · Official site ↗
Fixed by upgrading to 9.4.5 iVulnerabilities that affect 9.3.8 but no longer affect 9.4.5 — the security gain from this upgrade, by exploited status then exploitation probability.
Exploited first, then by exploitation probability (EPSS).
CVE-2026-72649 HIGH EPSS 1% ✓ cleared in 9.4.5 CVE-2026-72686 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72679 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72636 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72638 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72639 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72687 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72645 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72647 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72684 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-72685 MEDIUM EPSS 0% ✓ cleared in 9.4.5 CVE-2026-78605 MEDIUM EPSS 0% ✓ cleared in 9.4.5