SQL Query Validation Bypass Vulnerability in OpenSearch SQL Plugin by Amazon
CVE-2026-18428
8.7HIGH
What is CVE-2026-18428?
A vulnerability exists in the Flint extension query handler of the OpenSearch SQL plugin that permits a remote authenticated actor with async query access to bypass SQL query validation. This allows the actor to execute arbitrary code on Apache Spark workers simply by sending a specially crafted SQL query to the direct query endpoint, raising significant security concerns for system integrity and data protection.
Affected Version(s)
Opensearch 2.13 <= 3.5
Opensearch 2.13 <= 3.6
