Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-103005

Memory Allocation with Excessive Size Value (CWE-789) in Elasticsearch can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user with connector management privileges could cause the cluster to allocate an uncontrolled amount of memory when connector resources with an excessively large `description` field are created and subsequently accessed, exhausting available heap memory and crashing the affected node.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 21.8%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2026-103005


Contact Us

Shodan ® - All rights reserved