Home

Description

Insufficiently Protected Credentials in the Crowdstrike connector can lead to Crowdstrike credentials being leaked. A malicious user can access cached credentials from a Crowdstrike connector in another space by creating and running a Crowdstrike connector in a space to which they have access.

PUBLISHED Reserved 2025-04-16 | Published 2025-10-07 | Updated 2025-10-07 | Assigner elastic




MEDIUM: 5.4CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

Problem types

CWE-522 Insufficiently Protected Credentials

Product status

Default status
unaffected

7.0.0
affected

8.14.0
affected

8.19.0
affected

9.0.0
affected

9.1.0
affected

References

discuss.elastic.co/...1-5-security-update-esa-2025-19/382455

cve.org (CVE-2025-37728)

nvd.nist.gov (CVE-2025-37728)

Download JSON