Improper input validation in the capabilities route handler in OpenSearch Dashboards - the size of the request payload is not bounded - might allow remote attackers to cause a denial of service via a crafted HTTP request.Referenceshttps://aws.amazon.com/security/security-bulletins/2026-082-aws/https://opensearch.org/downloads/