A SQL query validation bypass in the Flint extension query handler in the OpenSearch SQL plugin allows a remote authenticated actor with async query access to execute arbitrary code on Apache Spark workers by sending a crafted SQL query to the direct query endpoint.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Aug 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A SQL query validation bypass in the Flint extension query handler in the OpenSearch SQL plugin allows a remote authenticated actor with async query access to execute arbitrary code on Apache Spark workers by sending a crafted SQL query to the direct query endpoint. | |
| Title | SQL Query Validation Bypass in OpenSearch Direct Query | |
| First Time appeared |
Aws
Aws opensearch Github Github opensearch |
|
| Weaknesses | CWE-693 | |
| CPEs | cpe:2.3:a:aws:opensearch:*:*:*:*:*:*:*:* cpe:2.3:a:github:opensearch:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Aws
Aws opensearch Github Github opensearch |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMZN
Published:
Updated: 2026-08-13T17:57:51.408Z
Reserved: 2026-07-30T18:25:37.247Z
Link: CVE-2026-18428
No data.
Status : Received
Published: 2026-08-13T18:17:21.130
Modified: 2026-08-13T18:17:21.130
Link: CVE-2026-18428
No data.
OpenCVE Enrichment
Updated: 2026-08-13T18:45:04Z