{"data":{"id":"51cb230f-e1cf-46cd-b099-98b34b21bf7b","title":"CVE-2026-72649: Deserialization of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to remote code exec","summary":"Elasticsearch's machine learning component has a vulnerability where it unsafely processes untrusted data during deserialization (the conversion of saved data back into usable objects), allowing attackers to inject and execute malicious code through specially crafted trained models. An attacker would need valid authentication and permissions to create and deploy models to exploit this flaw.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-72649","publishedAt":"2026-09-01T20:17:16.853Z","cveId":"CVE-2026-72649","cweIds":["CWE-502"],"cvssScore":"8.8","cvssSeverity":"high","severity":"high","attackType":["model_poisoning"],"issueType":"vulnerability","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":["Elasticsearch"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"network","attackComplexity":"low","privilegesRequired":"low","userInteraction":"none","exploitMaturity":"unknown","epssScore":0,"patchAvailable":null,"disclosureDate":"2026-09-01T20:17:16.853Z","capecIds":["CAPEC-586"],"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"model","llmSpecific":false,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":null}}