CVE-2024-52976: Elastic Agent
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Inclusion of functionality from an untrusted control sphere in Elastic Agent subprocess, osqueryd, allows local attackers to execute arbitrary code via parameter injection. An attacker requires local access and the ability to modify osqueryd configurations.
Affected products
- Elastic Elastic Agent: before 7.17.25 (fixed in 7.17.25); from 8.0.0, before 8.15.4 (fixed in 8.15.4)
Published 2025-05-01. Last modified 2026-06-17.