CyberRota Analysis
AI-GeneratedElasticsearch is vulnerable to a denial-of-service attack due to uncontrolled resource consumption, where an authenticated user can submit a crafted query that leads to exponential CPU usage during evaluation. This resource exhaustion can persist beyond the query's completion, potentially rendering ES|QL queries unavailable until the affected node is restarted. Organizations utilizing Elasticsearch, particularly those with user-generated queries, should prioritize addressing this vulnerability to maintain service availability.
Original NVD Description
Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead to denial of service via Exponential Data Expansion (CAPEC-197). An authenticated user may submit a specially crafted query to the ES|QL engine that causes exponential CPU consumption during query evaluation. Because the resource exhaustion persists beyond query completion, repeated requests can fully exhaust the available query worker resources, rendering ES|QL queries unavailable until the node is restarted.
Related CVEs
Other vulnerabilities affecting the same vendor(s)