6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Description
Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana Fleet can lead to Excessive Allocation (CAPEC-130) via a specially crafted request. This causes the application to perform redundant processing operations that continuously consume system resources until service degradation or complete unavailability occurs.
Basic Information
ID
CVE-2026-0530
Source
elastic
Published
Jan 13, 2026 at 21:03
Affected Product
Vendor
Elastic
Product
Kibana
Version
7.10.0
Affected Versions
Elastic Kibana 7.10.0
Elastic Kibana 8.0.0
Elastic Kibana 9.0.0
Elastic Kibana 9.2.0
Elastic Kibana 8.0.0
Elastic Kibana 9.0.0
Elastic Kibana 9.2.0