March 25, 2022 · Applied Cybernetics Group
CVE-2015-1427 — Elastic Elasticsearch
Elasticsearch Groovy Scripting Engine Remote Code Execution Vulnerability
- Added to KEV
2022-03-25- Federal due date
2022-04-15- Vendor
- Elastic
- Product
- Elasticsearch
- EPSS
- 99.7th percentile (score 0.923, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2015-1427
CISA short description
The Groovy scripting engine in Elasticsearch allows remote attackers to bypass the sandbox protection mechanism and execute arbitrary shell commands.
Required action
Apply updates per vendor instructions.