aws
Latest CVEs
The 15 most recently published vulnerabilities affecting aws.
- CVE-2026-12530Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()7.3
- CVE-2026-11931Insecure Permissions on Authentication Token Cache File in Kiro IDE5.5
- CVE-2026-12043Heap double-free in AWS Common Runtime aws-c-http8.8
- CVE-2026-10740Excessive memory allocation in s2n-quic5.3
- CVE-2026-11417OS Command Injection in NodejsFunction Bundling in aws-cdk-lib7.3
- CVE-2026-11393Code injection via improper triple-quote escaping in AgentCore CLI Bedrock Agent import9.0
- CVE-2026-11401Privilege Escalation in AWS Advanced Go Wrapper for Amazon Aurora PostgreSQL8.0
- CVE-2026-11400Privilege Escalation in AWS Advanced JDBC Wrapper for Amazon Aurora PostgreSQL8.0
- CVE-2026-10584HTTPS Fallback to HTTP in Graph Explorer5.9
- CVE-2026-10591Kiro IDE Insufficient File Write Restrictions to Execution-Sensitive Paths8.8
- CVE-2026-9291Insecure Deserialization in Amazon Braket SDK Job Results Processing7.1
- CVE-2026-9255Tool Execution Without Authorization via Piped Stdin in Kiro CLI7.8
- CVE-2026-9133Arbitrary file read in rabbitmq-aws plugin7.7
- CVE-2026-8838Remote Code Execution via eval() Injection in amazon-redshift-python-driver9.8
- CVE-2026-7461OS Command Injection in Amazon ECS Agent via FSx Windows File Server Volume Credentials7.2