Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana Fleet can lead to Excessive Allocation (CAPEC-130) via a specially crafted request. This causes the application to perform redundant processing operations that continuously consume system resources until service degradation or complete unavailability occurs.
2026-01-13T21:15:50.817
2026-01-22T19:58:42.553
Analyzed
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | elastic | kibana | < 7.17.29 | Yes |
| Application | elastic | kibana | < 8.19.10 | Yes |
| Application | elastic | kibana | < 9.1.10 | Yes |
| Application | elastic | kibana | < 9.2.4 | Yes |