CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2023-31419

mediumCVSS 6.5covered by 1 sourcefirst seen 2026-08-06

CSIRTS triage

What
Stack overflow vulnerability in Elasticsearch allows attacker to exhaust stack memory and crash process.
Who is affected
Elasticsearch deployments accepting untrusted input that triggers deep recursion or nesting.
Urgency
Medium severity (CVSS 6.5); denial of service impact requires specific input conditions but can crash clusters.
Action
Update Elasticsearch to version containing stack overflow mitigation.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2023-31419

Get an email if CVE-2023-31419 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2023-31419

CVE.org record

Embed the live status

CVE-2023-31419 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2023-31419 status](https://www.csirts.com/badge/CVE-2023-31419)](https://www.csirts.com/cve/CVE-2023-31419)