CyberRota Analysis
AI-GeneratedKibana is vulnerable to a denial of service due to improper resource allocation, allowing authenticated users to exploit specific endpoints with oversized input values. This excessive resource consumption can lead to service unavailability, impacting the overall functionality of Kibana. Organizations using Kibana should prioritize addressing this vulnerability to prevent potential disruptions in service.
Original NVD Description
Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service via Excessive Allocation (CAPEC-130). An authenticated user can submit a specially crafted request to affected Entity Analytics endpoints containing an oversized input value that causes excessive resource consumption, which may render Kibana unavailable.
Related CVEs
Other vulnerabilities affecting the same vendor(s)