CVE-2024-52980
A flaw was discovered in Elasticsearch, where a large recursion using the innerForbidCircularReferences function of the PatternBank class could cause the Elasticsearch node to crash.
A successful attack requires a malicious user to have read_pipeline Elasticsearch cluster privilege assigned to them.
A successful attack requires a malicious user to have read_pipeline Elasticsearch cluster privilege assigned to them.
Vendor
Product
CWE
Yayın Tarihi
2025-04-08 17:15:34
Güncelleme
2025-09-30 21:35:59
Source Identifier
security@elastic.co
KEV Date Added
-