A vulnerability identified as problematic has been detected in Elastic Eck Operator up to 3.4.1 . This impacts an unknown function of the component Secret Reference Validation . The manipulation leads to improper privilege management. This vulnerability is listed as CVE-2026-72640 . The attack may be initiated remotely. There is no available exploit.