Threats Tagged 'cve-2026-77811'
View all threats tagged with 'cve-2026-77811'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-77811'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-77811 - Stored Cross-Site Scripting via Integration Template Asset in OpenSearch DashboardsCVE-2026-77811 0 CVE-2026-77811 is a stored cross-site scripting (XSS) vulnerability in the dashboards-observability plugin of OpenSearch Dashboards. It allows a remote authenticated user with write permissions to upload a custom integration containing arbitrary JavaScript via the integrations static file endpoint. When another user accesses this endpoint, the malicious script executes in their browser, potentially performing actions with their privileges. The issue affects OpenSearch Dashboards versions before 3.4 and before 2.19.6, and Amazon OpenSearch Service versions before 3.3. Fixes have been released for all affected versions. Join the discussion | AWS Security Bulletins | 08/21/2026, 20:12:14 UTC Added: 08/21/2026, 20:20:41 UTC |
Showing 1 to 1 of 1 result