Security Advisory

CVE-2024-52973

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-21 11:04:06
Last updated 2025-01-21 16:25:27
Assigner elastic
State PUBLISHED

Description

An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/log_entries/summary. This can be carried out by users with read access to the Observability-Logs feature in Kibana.