Sorry for the late reply.
From the alerts.json logs, we can see that the logs are not indexed as depicted by this message:
Cannot index event publisher.Event.
Could you enable Filebeat logging to
/var/log/filebeat following this
documentation.
Restart Filebeat and Elasticsearch, then share the Filebeat and Elasticsearch logs here so we could analyse the entire message.
Equally share your
/var/log/messages logs.