A SQL query validation bypass in the Flint extension query handler in the OpenSearch SQL plugin allows a remote authenticated actor with async query access to execute arbitrary code on Apache Spark workers by sending a crafted SQL query to the direct query endpoint.
Metrics
Affected Vendors & Products
References
History
Fri, 14 Aug 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Aug 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A SQL query validation bypass in the Flint extension query handler in the OpenSearch SQL plugin allows a remote authenticated actor with async query access to execute arbitrary code on Apache Spark workers by sending a crafted SQL query to the direct query endpoint. | |
| Title | SQL Query Validation Bypass in OpenSearch Direct Query | |
| First Time appeared |
Aws
Aws opensearch Github Github opensearch |
|
| Weaknesses | CWE-693 | |
| CPEs | cpe:2.3:a:aws:opensearch:*:*:*:*:*:*:*:* cpe:2.3:a:github:opensearch:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Aws
Aws opensearch Github Github opensearch |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMZN
Published: 2026-08-13T17:32:48.455Z
Updated: 2026-08-13T17:57:51.408Z
Reserved: 2026-07-30T18:25:37.247Z
Link: CVE-2026-18428
Updated: 2026-08-13T17:57:48.122Z
Status : Awaiting Analysis
Published: 2026-08-13T18:17:21.130
Modified: 2026-08-14T19:04:40.110
Link: CVE-2026-18428
No data.