CVE-2015-1427: Elasticsearch Groovy Scripting Engine Remote Code Execution Vulnerability
The Groovy scripting engine in Elasticsearch allows remote attackers to bypass the sandbox protection mechanism and execute arbitrary shell commands. Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution