Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28hq-v755-x5ph

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

EPSS

Процентиль: 36%
0.00154
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 года назад

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

CVSS3: 6.5
debian
около 1 года назад

An allocation of resources without limits or throttling in Kibana can ...

CVSS3: 6.5
fstec
около 1 года назад

Уязвимость сервиса визуализации данных Kibana, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 36%
0.00154
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770