GHSA-5mjq-6xvh-rmv2MediumCVSS 4.3

A flaw in Elasticsearch allows a low-privileged authenticated user who can index documents to...

Published
August 13, 2026
Last Modified
August 13, 2026

🔗 CVE IDs covered (1)

📋 Description

A flaw in Elasticsearch allows a low-privileged authenticated user who can index documents to submit a single small document containing a crafted user-supplied input. Processing one such document occupies a worker thread from a bounded pool for a disproportionate amount of time, degrading the availability of indexing operations on the affected node.

🔗 References (3)