Vulnerability Details CVE-2026-56148
Uncontrolled Recursion (CWE-674) in Elasticsearch can lead to a denial of service via Excessive Allocation (CAPEC-130). An authenticated user can submit a specially crafted query that causes excessive resource consumption while the request is processed, which may render the affected node unavailable.
Exploit prediction scoring system (EPSS) score
CVSS Severity
CVSS v3 Score 6.5