Comments (7)
@coutoPL @sscarduzio - thanks for the update and contributions!
from elasticsearch-readonlyrest-plugin.
Hi @JamieSlome. You are right, we need the security file. I Will take care of adding it later today. In the meantime please contact support at readonlyrest.com.
Thank you!
from elasticsearch-readonlyrest-plugin.
I added the SECURITY.md as requested
https://github.com/sscarduzio/elasticsearch-readonlyrest-plugin/blob/develop/SECURITY.md
from elasticsearch-readonlyrest-plugin.
@sscarduzio - thank you for your timely response here. Just for reference, you can view the report directly here:
https://huntr.dev/bounties/6b10fb54-c2f2-45d0-8459-63a941992114/
It is private and only visible to you (the owner of the repository). Let me know if you have any questions!
from elasticsearch-readonlyrest-plugin.
@sscarduzio - you should have just received an e-mail to the address in your SECURITY.md
with further details of the report.
from elasticsearch-readonlyrest-plugin.
Hi @JamieSlome, thanks for this report. We fixed the issue already yesterday night. It affected an experimental part of our code (ROR proxy) that was never packaged and released to customers. So the impact is fortunately null.
from elasticsearch-readonlyrest-plugin.
this is fixed: #773
from elasticsearch-readonlyrest-plugin.
Related Issues (20)
- Does this work on ES 7.10.0? HOT 2
- Support for certificates in PEM format, in addition to keystore format HOT 3
- despite force_load_from_file=true, ROR plugin tries to load .readonlyrest index HOT 2
- Kibana Short url creation not recognised on Kibana 7.8.1 HOT 4
- When user access a forbidden resource, the user cannot access to kibana dashboards in 7.5.1 HOT 3
- Can't Update Kibana to 7.12.0 with ROR enabled HOT 6
- Curator can't create backup with ROR enabled HOT 7
- 请问配置更新有api吗? HOT 3
- elasticsearch7.15.1 安装后启动报错
- Why are 403 response codes sent while ROR plugin isn't initiated? HOT 5
- No Tag in Github for Version v1.39.0-pre4_es7.17.3 HOT 4
- Indices rule not working for data stream ES 7.17 HOT 11
- How configure in docker compose with this plugin HOT 3
- Unable to make field private static final java.util.Map
- kibana_access is not working (_bulk_resolve are blocked) HOT 12
- Error while installing ror plugin inside docker container HOT 2
- Unable to connect to LDAP server HOT 2
- Can't able to authenticate with LDAP HOT 14
- Kibana ::1:<port> ECONNREFUSED HOT 15
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from elasticsearch-readonlyrest-plugin.