SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-94399

MEDIUM · CVSS 6.5 EPSS 0.41%

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

Elasticsearch is vulnerable to uncontrolled resource consumption, which can result in a denial of service due to excessive resource allocation. This vulnerability may allow attackers to deplete system resources, potentially disrupting service availability. Organizations using Elasticsearch should prioritize remediation to mitigate the risk of service interruptions.

CVE
CVE-2026-94399
Severity
MEDIUM
CVSS
6.5
EPSS
0.41%

Original NVD Description

Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead denial of service via Excessive Allocation (CAPEC-130)

Related CVEs

Other vulnerabilities affecting the same vendor(s)