CVE-2026-18420 | AWS OpenSearch Service/Dashboards up to 3.7.x Time Series Visual Builder prototype pollution
A vulnerability categorized as critical has been discovered in AWS OpenSearch Service and Dashboards up to 3.7.x. This issue affects some unknown processing of the component Time Series Visual Builder. The manipulation results in improperly controlled modification of object prototype attributes.
This vulnerability is known as CVE-2026-18420. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More