A vulnerability categorized as problematic has been discovered in Elastic Elasticsearch up to 8.19.19/9.4.4 . This affects an unknown function of the component Wildcard Matching Helper . Executing a manipulation can lead to uncontrolled recursion. This vulnerability is tracked as CVE-2026-72636 . The attack can be launched remotely. No exploit exists. It is advisable to upgrade the affected component.