SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-94396

MEDIUM · CVSS 6.5 EPSS 0.41%

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

Elasticsearch is vulnerable to uncontrolled resource consumption, which can be exploited to cause a denial of service through excessive resource allocation. This vulnerability poses a medium risk, particularly for organizations relying on Elasticsearch for critical applications, as it could lead to service interruptions. Users and administrators of Elasticsearch should prioritize remediation to mitigate potential disruptions to their services.

CVE
CVE-2026-94396
Severity
MEDIUM
CVSS
6.5
EPSS
0.41%

Original NVD Description

Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead denial of service via Excessive Allocation (CAPEC-130)

Related CVEs

Other vulnerabilities affecting the same vendor(s)