CVE-2026-56150
Elastic Fleet Server, fleet server
Allocation of Resources Without Limits or Throttling (CWE-770) in Fleet Server can lead to a denial of service via Excessive Allocation (CAPEC-130). An attacker can submit a specially crafted request to an upload endpoint that causes excessive memory consumption, which may render Fleet Server unavailable.
- CVSS
- 7.5
- EPSS
- 0.35% 27.4% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.02