Resource Allocation Vulnerability in Kibana by Elastic
CVE-2026-72653
6.5MEDIUM
What is CVE-2026-72653?
The vulnerability in Kibana arises from improper resource management, allowing authenticated users authorized to maintain system windows to exploit this flaw. By submitting a specially crafted malformed payload, an attacker can cause excessive resource consumption, leading to application unresponsiveness. This issue necessitates manual intervention to restore functionality, resulting in potential service disruptions for all users.
Affected Version(s)
Kibana 8.12.0 <= 8.19.18
Kibana 9.0.0 <= 9.3.7
Kibana 9.4.0 <= 9.4.3