CyberRota
← Ana sayfaya dön

CVE-2026-63260

MEDIUM · CVSS 6.5

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-21T23:18:02.697 · Çekilme zamanı: 2026-07-22T00:31:39.742755+00:00

CyberRota Yorumu

Bellek tüketimine neden olabilir.

CVE
CVE-2026-63260
Severity
MEDIUM
CVSS
6.5
EPSS
Yok

Orijinal NVD Açıklaması

Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated attacker with low-privilege access can trigger a denial of service condition in Kibana by sending a specially crafted, oversized request payload. Processing this user-supplied input requires resource-intensive memory allocation that can exhaust the available heap memory in the Kibana process, causing it to crash and become unavailable to all users.