#VU121291 Resource exhaustion in Kibana - CVE-2026-0543
Published: January 13, 2026
Kibana
Elastic Stack
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources. A remote user can pass a specially crafted email parameter to the application to trigger resource exhaustion and perform a denial of service (DoS) attack.