Allocation of Resources Without Limits or Throttling (CWE-770) in Elasticsearch can allow an authenticated user with snapshot restore privileges to cause Excessive Allocation (CAPEC-130) of memory and a denial of service (DoS) via crafted HTTP request.
{
"severity": "Medium",
"cpes": [
"cpe:2.3:a:elastic:elasticsearch:*:*:*:*:*:maven:*:*"
]
}