CVE-2025-13653 - CVE House
Back to Database
Status published Medium CVE-2025-13653

Unauthorized access to documents in data streams with specially crafted requests

Vulnerability Description

In Search Guard FLX versions from 3.1.0 up to 4.0.0 with enterprise modules being disabled, there exists an issue which allows authenticated users to use specially crafted requests to read documents from data streams without having the respective privileges.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-13653

Credits & Attribution

No credits recorded in the NVD database.