vulnerability

Elastic Elasticsearch: CVE-2024-52979: Uncontrolled Resource Consumption

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
May 1, 2025
Added
Oct 6, 2025
Modified
Oct 6, 2025

Description

Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache functions can lead to Denial of Service by causing the Elasticsearch node to crash.

Solution

elastic-elasticsearch-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.