PT-2026-79880 · Bitnami · Elk

Published

2026-08-19

·

Updated

2026-08-19

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user with read-only privileges to the alerting feature could submit a specially crafted, malformed payload that causes the Kibana process to consume excessive resources. A single request is sufficient to leave Kibana unable to serve requests for all users until the process is restarted.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BIT-ELK-2026-72651

Affected Products

Elk