Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28hq-v755-x5ph

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

EPSS

Процентиль: 35%
0.00139
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
nvd
10 месяцев назад

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

CVSS3: 6.5
debian
10 месяцев назад

An allocation of resources without limits or throttling in Kibana can ...

CVSS3: 6.5
fstec
12 месяцев назад

Уязвимость сервиса визуализации данных Kibana, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 35%
0.00139
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770