github.com/elastic/beats/v7 vulnerabilities
CVEs whose affected-version data names the github.com/elastic/beats/v7 package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-26933Medium· 5.7Packetbeat does not properly validate an array index in multiple protocol parser components
Packetbeat does not properly validate an array index in multiple protocol parser components
▾ Sunlitelastic · github.com/elastic/beats/v7EPSS 0.24%via OSV
CVE-2025-68383Medium· 6.5Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration
Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration
▾ Sunlitelastic · github.com/elastic/beats/v7EPSS 0.19%via OSV