CVE-2025-12977 | FluentBit 4.1.0 in_http/in_splunk/in_elasticsearch tag_key improper validation of specified type of input (Nessus ID 276933)
A vulnerability was found in FluentBit 4.1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component in_http/in_splunk/in_elasticsearch. The manipulation of the argument tag_key leads to improper validation of specified type of input.
This vulnerability is traded as CVE-2025-12977. It is possible to initiate the attack remotely. There is no exploit available.