Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36558 | An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is set to info, where no leak occurs. |
Mon, 29 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:elastic:elastic_agent:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Fri, 09 Aug 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Aug 2024 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is set to info, where no leak occurs. | |
| Title | Elastic Agent Insertion of Sensitive Information into Log File | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: elastic
Published:
Updated: 2024-08-09T15:34:02.839Z
Reserved: 2024-06-05T14:21:14.942Z
Link: CVE-2024-37283
Updated: 2024-08-09T15:33:55.763Z
Status : Analyzed
Published: 2024-08-12T13:38:23.093
Modified: 2025-09-29T14:06:40.593
Link: CVE-2024-37283
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:01:10Z
EUVD