Advisory
Amazon advisory
Public advisories from vendor feeds, with related items from the same catalog.
Jul 31, 2026, 02:22 PM EDT
Related advisories
More recent public advisories for Amazon.
- CVE-2026-18394 - Incorrect authorization in Strands Agents Tools http_request tool
- Incomplete fix for CVE-2025-4318 code injection in Amazon @aws-amplify/codegen-ui-react
- CVE-2026-18140 - Uncontrolled recursion in the aws-smithy-json unknown-key skip path allows unauthenticated remote denial of service in smithy-rs generated servers
- CVE-2026-16796 - Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()
- CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service