Home
MEDIUM: 4.9 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:HDefault status
unaffected
9.0.0 (semver)
affected
8.0.0 (semver)
affected
Description
Inefficient Regular Expression Complexity (CWE-1333) in the AI Inference Anonymization Engine in Kibana can lead Denial of Service via Regular Expression Exponential Blowup (CAPEC-492).
Problem types
CWE-1333 Inefficient Regular Expression Complexity
Product status
9.0.0 (semver)
8.0.0 (semver)
References
discuss.elastic.co/...2-5-security-update-esa-2026-14/385250