Home/Product/amazon opensearch
Product

amazon opensearch

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-9624
< 3.3.0
A vulnerability in OpenSearch allows attackers to cause Denial of Service (DoS) by submitting complex query_string inputs. This
7.5HIGH
CVE-2024-39901
< 2.14
OpenSearch Observability is collection of plugins and applications that visualize data-driven events. An issue in the OpenSearch o
4.2MEDIUM
CVE-2024-39900
< 2.14
OpenSearch Dashboards Reports allows ‘Report Owner’ export and share reports from OpenSearch Dashboards. An issue in the OpenS
5.4MEDIUM
CVE-2023-45807
< 1.3.14.0
OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana following the license change in early 2021. There i
5.4MEDIUM
CVE-2023-31141
< 1.3.10
OpenSearch is open-source software suite for search, analytics, and observability applications. Prior to versions 1.3.10 and 2.7.0
4.8MEDIUM
CVE-2023-25806
< 1.3.9
OpenSearch Security is a plugin for OpenSearch that offers encryption, authentication and authorization. There is an observable di
5.3MEDIUM
CVE-2023-23933
>= 1.0.0 and < 1.3.8
OpenSearch Anomaly Detection identifies atypical data and receives automatic notifications. There is an issue with the application
4.3MEDIUM
CVE-2023-23613
>= 1.0.0 and < 1.3.8
OpenSearch is an open source distributed and RESTful search engine. In affected versions there is an issue in the implementation o
5.7MEDIUM
CVE-2023-23612
>= 1.0.0 and < 1.3.8
OpenSearch is an open source distributed and RESTful search engine. OpenSearch uses JWTs to store role claims obtained from the Id
4.7MEDIUM
CVE-2022-41917
>= 1.0.0 and < 1.3.7
OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. OpenSearch allows users to specify a local file wh
4.3MEDIUM
CVE-2022-41918
< 1.3.7
OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. There is an issue with the implementation of fine-
6.3MEDIUM
CVE-2022-35980
all versions
OpenSearch Security is a plugin for OpenSearch that offers encryption, authentication and authorization. Versions 2.0.0.0 and 2.1.
7.5HIGH
CVE-2022-31115
< 2.0.2
opensearch-ruby is a community-driven, open source fork of elasticsearch-ruby. In versions prior to 2.0.1 the ruby YAML.load fun
8.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin