
Proud to share that CVE-2026-56148 has now been published! 🎉 The issue was resolved in versions 8.19.17, 9.3.6, and 9.4.3 of Elasticsearch. https://discuss.elastic.co/t/elasticsearch-8-19-17-9-3-6-9-4-3-security-update-esa-2026-42/387439 #TogetherWeHitHarder
Post summary
The tweet announces CVE-2026-56148, indicates it has been patched in Elasticsearch releases 8.19.17, 9.3.6, and 9.4.3, and references Elastic’s discussion thread for further details.

