CyberRota Analysis
AI-GeneratedKibana is vulnerable to a denial of service due to improper resource allocation, allowing an authenticated user with low-level privileges to submit a specially crafted request that can exhaust memory resources. This can render the application unavailable to all users, impacting service continuity. Organizations using Kibana should prioritize addressing this vulnerability to prevent potential service disruptions.
Original NVD Description
Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service via Excessive Allocation (CAPEC-130). An authenticated user with low-level privileges could submit a specially crafted request that causes Kibana to consume an unbounded amount of memory, rendering it unavailable to all users.
Related CVEs
Other vulnerabilities affecting the same vendor(s)