SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-94397

MEDIUM · CVSS 6.5 EPSS 0.41%

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

Elasticsearch is vulnerable to uncontrolled resource consumption, which can result in denial of service due to excessive resource allocation. This issue may allow an attacker to exhaust system resources, potentially leading to service outages. Organizations utilizing Elasticsearch should prioritize addressing this vulnerability to maintain service availability and performance.

CVE
CVE-2026-94397
Severity
MEDIUM
CVSS
6.5
EPSS
0.41%

Original NVD Description

Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead denial of service via Excessive Allocation (CAPEC-130)

Related CVEs

Other vulnerabilities affecting the same vendor(s)