A vulnerability was found in Elastic Elasticsearch up to 8.19.19/9.4.4/9.5.0 . It has been classified as problematic . This affects an unknown function of the component Search Request . Performing a manipulation results in uncontrolled memory allocation. This vulnerability was named CVE-2026-72645 . The attack may be initiated remotely. There is no available exploit.