Missing input validation in the threat intelligence feed parser in the OpenSearch Security Analytics plugin might allow an authenticated remote user to perform server-side request forgery and read lo…
High CVSS 8.1
Summary
Missing input validation in the threat intelligence feed parser in the OpenSearch Security Analytics plugin might allow an authenticated remote user to perform server-side request forgery and read local files via a crafted URL parameter to the threat intel source configuration endpoint.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://aws.amazon.com/security/security-bulletins/2026-079-aws/
- https://docs.aws.amazon.com/opensearch-service/latest/developerguide/service-software.html
- https://github.com/opensearch-project/security-analytics/security/advisories/GHSA-w946-8jxc-6v3m
Timeline
- nvd_ingest NVD