Unrated severityNVD Advisory· Published Jul 1, 2026· Updated Jul 1, 2026
Uncontrolled Recursion in Elasticsearch Leading to Denial of Service
CVE-2026-56148
Description
Uncontrolled Recursion (CWE-674) in Elasticsearch can lead to a denial of service via Excessive Allocation (CAPEC-130). An authenticated user can submit a specially crafted query that causes excessive resource consumption while the request is processed, which may render the affected node unavailable.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.