Elasticsearch 6.x — End of Life
EOL Medium riskElasticsearch 6.x reached end of life on Feb 10, 2022, 1700 days ago, and no longer receives security fixes. The most recent release in this series is 6.8.23. 1 CVE is tracked for this series. 1 of them was published after the end of life of the affected cycle and will not get an official patch. The next major version is Elasticsearch 7. See Elasticsearch 7 →
Elasticsearch 6.x — All releases
| Version | Released | Active support | EOL date | Latest patch | Status | Alert me |
|---|---|---|---|---|---|---|
| 6 | Nov 14, 2017 | — | Feb 10, 2022 | 6.8.23 | EOL |
CVEs affecting Elasticsearch 6.x (1)
| CVE | Severity | CVSS | EPSS | KEV | Cycle | Description | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-72683 | MEDIUM | 6.5 | 0.56% | — | 6 | A flaw in Elasticsearch allows an authenticated user with the privileges required to invoke the simulate pipeline API en… | Aug 13, 2026 |
Elasticsearch 6.x is EOL — migrate to Elasticsearch 7.x
Elasticsearch 7.x is the next major release. Plan your upgrade before Elasticsearch 6.x stops receiving security patches.
Add a Elasticsearch 6 EOL badge to your README
Show your users which Elasticsearch version your project runs and whether it is still supported. The badge updates automatically. More formats and options →
[](https://eolcanary.com/explore/elasticsearch/6)Frequently asked questions
Is Elasticsearch 6 end of life?
Yes. All Elasticsearch 6.x releases have reached end of life and no longer receive security patches. There are 1 known CVE affecting Elasticsearch 6.x. Migrate to Elasticsearch 7.x as soon as possible.
What CVEs affect Elasticsearch 6?
There are 1 CVE tracked for Elasticsearch 6.x. See the full list above with CVSS and EPSS scores.
What is the latest Elasticsearch 6 version?
The latest Elasticsearch 6.x patch release is 6.8.23, released on January 13, 2022. Always run the latest patch to benefit from all security fixes.
How to migrate from Elasticsearch 6 to Elasticsearch 7?
To migrate from Elasticsearch 6 to Elasticsearch 7: (1) review the official Elasticsearch 7 migration guide for breaking changes, (2) update dependencies and configuration accordingly, (3) test thoroughly in a staging environment, (4) deploy with a rollback plan. Starting early gives you time to resolve compatibility issues before your current version reaches end of life.
Is it safe to run Elasticsearch 6 in production?
No. Elasticsearch 6 has reached end of life and security vulnerabilities are no longer patched. Upgrade to a supported version immediately.
Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA
