Loading HuntDB...

GHSA-v9r8-fpcm-rhvm

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ HA ElasticSearch service does not implement any form of authentication for the clustering transport services, and all data used by ElasticSearch for transport is unencrypted. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

Related CVEs

Key Information

GHSA ID
GHSA-v9r8-fpcm-rhvm
Published
May 24, 2022 5:45 PM
Last Modified
July 13, 2022 12:01 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 31, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.