CVE-2025-68384 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Allocation of Resources Without Limits or Throttling (CWE-770) in Elasticsearch can allow a low-privileged authenticated user to cause Excessive Allocation (CAP…
Medium CVSS: 6.5

CVE-2025-68384

Allocation of Resources Without Limits or Throttling (CWE-770) in Elasticsearch can allow a low-privileged authenticated user to cause Excessive Allocation (CAPEC-130) causing a persistent denial of service (OOM crash) via submission of oversized user settings data.
Vendor
Elastic
Product
Elasticsearch
CWE
CWE-770
Yayın Tarihi
2025-12-18 22:16:02
Güncelleme
2025-12-23 17:45:41
Source Identifier
security@elastic.co
KEV Date Added
-

Kategoriler

Referanslar