On 2026-08-06 between 0900 - 1200 UTC, customers in GCP asia-south1 may have experienced high latency when communicating with their Elasticsearch deployments during this window. The cause has been identified and mitigated.
Elasticsearch 9.5.0 contains a query-correctness defect
开始时间 2026年8月5日 UTC 22:59 · 6d 10h
Outage重大事件
identified
Elasticsearch 9.5.0 contains a defect that can cause searches to return incorrect results for any index or data stream that disables indexing on a queried field . A query that excludes values using a must_not clause may fail to exclude them when the targeted field has doc values enabled but is not indexed for search. Affected searches can return documents that should have been excluded and report higher document counts than expected, and results may vary between runs of the same query.
No error is raised, so affected queries appear to succeed. Dashboards, alerting rules, and anything else built on these searches may report inaccurate values. Both the query DSL and ES|QL are affected.
Time series (TSDB) data streams are the most likely to be affected, because indexing is disabled by default for these fields. Columnar indices, currently in technical preview, are affected for the same reason. Any index or data stream that disables indexing on a queried field can be affected.
This affects Elasticsearch 9.5.0 on Elastic Cloud Hosted, Elastic Cloud Enterprise, and self-managed deployments, as well as Elasticsearch Serverless projects. Elasticsearch 9.4.x and earlier are not affected. There is no impact to cluster availability, connectivity, or data ingestion.
What you can do:
- If you have not yet upgraded to 9.5.0, we recommend deferring the upgrade until a fixed version is available.
- If you are already running 9.5.0, contact Elastic Support if you need help determining whether your searches are affected.
We have identified the root cause, a fix is in progress, and we are preparing a patch release. We will provide a further update by 10:00 UTC August 6.
identified
Further investigation confirmed the impact of this issue was limited to boolean queries containing a must, filter, or should clause, along with a must_not clause on unindexed fields. Such queries can return false-positives returning documents that should have been excluded and report higher document counts than expected.
We have identified the root cause, a fix is in progress, and we are preparing a patch release. We will provide a further update by 10:00 UTC August 6.
identified
A patch release containing the fix is in progress and it is expected to be available within the next week. Our recommendation to defer upgrading to 9.5.0 until 9.5.1 is available remains unchanged.
resolved
Elasticsearch 9.5.1 has been released and contains the fix for this issue. Customers running 9.5.0 should upgrade to 9.5.1. At this time we are considering this issue resolved and will be providing no further updates.
我们正在调查一个影响多要素认证(MFA)的问题, 受影响的用户在接收其电子邮件MFA代码时可能会遇到长时间的拖延或失败.
可用工作轮廓 :
- 注册时使用替代的多功能省系数(认证员App/TOTP或WebAuthn)。
- 使用“Log in with Google”社会登录按钮认证。
注: API 进入您的项目和部署的密钥仍然充分运作。
我们正在同我们的伙伴积极合作以解决这一问题,并将尽快提供最新情况.
investigating
更新 : 这一事件仍在进行中,我们正在继续调查。
我们正在调查一个影响多要素认证(MFA)的问题, 受影响的用户在接收其电子邮件MFA代码时可能会遇到长时间的拖延或失败.
可用工作轮廓 :
- 注册时使用替代的多功能省系数(认证员App/TOTP或WebAuthn)。
- 使用“Log in with Google”社会登录按钮认证。
注: API 进入您的项目和部署的密钥仍然充分运作。
我们正在同我们的伙伴积极合作以解决这一问题,并将尽快提供最新情况.
我们发现了基巴纳认证流的问题 使用"Log in with Elastic Cloud"按钮认证到Kibana会导致认证失败. 一个绕道是利用弹性云控制台内部的链接进入基巴纳. 我们目前正在拟订一项决议。 我们将在30分钟后发布最新消息,如果情况有变化,则提前发布.
自动翻译自官方事件更新。
与 Kibana 认证流发生关系
开始时间 2026年6月16日 UTC 10:57 · 39m
Outage重大事件
受影响的组件
Cloud console
investigating
我们发现部署和项目的基巴纳认证流程存在问题。 使用"Log in with Elastic Cloud"按钮认证到Kibana会导致认证失败.
一个绕道是利用弹性云控制台内部的链接进入基巴纳. 我们目前正在拟订一项决议。
我们的小组目前正在找出解决问题的根源。
我们将在下一个小时内分享另一个最新情况.
investigating
我们正在继续调查这一问题.
resolved
我们查明了问题的根源并缓解了这一问题。 用户现在应该能够通过"Log in with Elastic Cloud"按钮登录到Kibana.