A vulnerability categorized as problematic has been discovered in Elastic Elasticsearch up to 8.17.9. Affected by this vulnerability is an unknown functionality of the component ES|QL Query Processing. The manipulation results in uncontrolled memory allocation.
This vulnerability is identified as CVE-2026-72656. The attack can be executed remotely. There is not any exploit available.