A vulnerability identified as problematic has been detected in Elastic Fleet Server up to 8.19.19/9.4.4/9.5.0. Affected by this issue is some unknown functionality. This manipulation causes authorization bypass.

This vulnerability is tracked as CVE-2026-72657. The attack is possible to be carried out remotely. No exploit exists.