CVE Tools
Back to feed
Research Bedrock AgentCore ai-ml Agent Development Kit AWS privilege-escalation

AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model

The Hacker News·By The Hacker News··8 min read
CVE Tools coverage

Researchers disclosed authorization flaws in AWS Bedrock AgentCore, Google's Agent Development Kit, and Vercel's AI SDK that allowed unauthorized tool execution by bypassing model-level checks. In several scenarios, the underlying language models never processed the input, rendering standard safety guardrails ineffective. All three vendors have deployed fixes; users should update to ADK 2.5.0, @ai-sdk/harness-codex 1.0.29, and @ai-sdk/harness-opencode 1.0.28 to mitigate risks associated with CVE-2026-18830, CVE-2026-18236, CVE-2026-64650, and CVE-2026-64651.