A vulnerability, which was classified as critical , was found in Amazon OpenSearch . This affects an unknown part of the component Alerting . The manipulation of the argument data_source/input_index results in improper authorization. This vulnerability is known as CVE-2026-19311 . It is possible to launch the attack remotely. No exploit is available.