{"schema_version":1,"title":"Amazon Web Services vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 47 vulnerabilities in Amazon Web Services: 0 in the last 7 days and 14 in the last 90 days, 2 of them critical and 0 exploited in the wild. The most recent, CVE-2026-87913, was published on 10 September 2026. 7 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/amazon-web-services","json_url":"https://junglewise.ai/threats/vendors/amazon-web-services.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/amazon-web-services","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":39,"all_time":47,"critical":2,"exploited":0,"last_7_days":0,"last_30_days":4,"last_90_days":14,"last_365_days":39},"latest":[{"cve":"CVE-2026-87913","cvss":5.9,"epss":0.0044,"slug":"cve-2026-87913-aws-security-agent-mcp-server-missing-s3-bucket-ownership","title":"AWS Security Agent MCP server missing S3 bucket ownership verification","severity":"medium","exploited":false,"published_at":"2026-09-10T16:18:07.187+00:00","url":"https://junglewise.ai/threats/cve-2026-87913-aws-security-agent-mcp-server-missing-s3-bucket-ownership"},{"cve":"CVE-2026-18952","slug":"cve-2026-18952-opensearch-security-analytics-plugin-missing-input-validation","title":"OpenSearch Security Analytics Plugin missing input validation","severity":"high","exploited":false,"published_at":"2026-09-09T21:35:25+00:00","url":"https://junglewise.ai/threats/cve-2026-18952-opensearch-security-analytics-plugin-missing-input-validation"},{"cve":"CVE-2026-18953","slug":"cve-2026-18953-aws-transform-mcp-server-improper-pathname-validation","title":"AWS Transform MCP Server improper pathname validation","severity":"high","exploited":false,"published_at":"2026-09-09T21:35:24+00:00","url":"https://junglewise.ai/threats/cve-2026-18953-aws-transform-mcp-server-improper-pathname-validation"},{"cve":"CVE-2026-75897","cvss":7.5,"slug":"cve-2026-75897-opensearch-dashboards-uncontrolled-resource-consumption-in","title":"OpenSearch Dashboards uncontrolled resource consumption in capabilities route","severity":"high","exploited":false,"published_at":"2026-09-09T21:30:11+00:00","url":"https://junglewise.ai/threats/cve-2026-75897-opensearch-dashboards-uncontrolled-resource-consumption-in"},{"cve":"CVE-2026-18481","cvss":7.3,"slug":"cve-2026-18481-aws-ops-wheel-stored-xss-in-participant-url-handling","title":"AWS Ops Wheel stored XSS in participant URL handling","severity":"high","exploited":false,"published_at":"2026-07-31T19:17:08.347+00:00","url":"https://junglewise.ai/threats/cve-2026-18481-aws-ops-wheel-stored-xss-in-participant-url-handling"},{"cve":"CVE-2026-15737","cvss":5.7,"slug":"cve-2026-15737-aws-bedrock-agentcore-python-sdk-sensitive-information-disclosure","title":"AWS Bedrock AgentCore Python SDK sensitive information disclosure in OpenTelemetry spans","severity":"high","exploited":false,"published_at":"2026-07-16T18:16:42.537+00:00","url":"https://junglewise.ai/threats/cve-2026-15737-aws-bedrock-agentcore-python-sdk-sensitive-information-disclosure"},{"cvss":7.8,"slug":"aws-jsii-diff-command-injection-in-npm-package-loading-6b097e33","title":"AWS jsii-diff command injection in npm package loading","severity":"high","exploited":false,"published_at":"2026-07-15T21:31:22+00:00","url":"https://junglewise.ai/threats/aws-jsii-diff-command-injection-in-npm-package-loading-6b097e33"},{"cve":"CVE-2026-15895","cvss":7.8,"epss":0.0108,"slug":"cve-2026-15895-aws-jsii-diff-os-command-injection-in-npm-package-loading","title":"AWS jsii-diff OS command injection in npm package loading","severity":"high","exploited":false,"published_at":"2026-07-15T19:16:58.693+00:00","url":"https://junglewise.ai/threats/cve-2026-15895-aws-jsii-diff-os-command-injection-in-npm-package-loading"},{"cve":"CVE-2026-15746","cvss":6.5,"slug":"cve-2026-15746-amazon-strands-agents-tools-ssrf-in-elasticsearch-memory-tool","title":"Amazon Strands Agents Tools SSRF in elasticsearch_memory tool","severity":"high","exploited":false,"published_at":"2026-07-15T19:16:57.773+00:00","url":"https://junglewise.ai/threats/cve-2026-15746-amazon-strands-agents-tools-ssrf-in-elasticsearch-memory-tool"},{"cve":"CVE-2026-14904","cvss":6.5,"slug":"cve-2026-14904-aws-research-and-engineering-studio-arbitrary-file-read-in-auth","title":"AWS Research and Engineering Studio Arbitrary File Read in Auth.GetUserPrivateKey","severity":"high","exploited":false,"published_at":"2026-07-07T17:16:35.627+00:00","url":"https://junglewise.ai/threats/cve-2026-14904-aws-research-and-engineering-studio-arbitrary-file-read-in-auth"},{"cve":"CVE-2026-89090","cvss":3.1,"epss":0.0031,"slug":"cve-2026-89090-aws-sdk-for-go-v2-denial-of-service-in-eventstream-header-decoder","title":"GO-2026-5764 - DoS due to Panic in AWS SDK for Go v2 SDK EventStream Decoder in github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream","severity":"high","exploited":false,"published_at":"2026-07-07T16:52:19+00:00","url":"https://junglewise.ai/threats/cve-2026-89090-aws-sdk-for-go-v2-denial-of-service-in-eventstream-header-decoder"},{"cve":"CVE-2026-14265","cvss":7.5,"slug":"cve-2026-14265-aws-advanced-jdbc-wrapper-rce-in-remotequerycacheplugin","title":"AWS Advanced JDBC Wrapper RCE in RemoteQueryCachePlugin","severity":"high","exploited":false,"published_at":"2026-07-01T20:17:08.087+00:00","url":"https://junglewise.ai/threats/cve-2026-14265-aws-advanced-jdbc-wrapper-rce-in-remotequerycacheplugin"},{"cve":"CVE-2026-13769","cvss":5.5,"epss":0.0016,"slug":"cve-2026-13769-aws-aws-cli-insecure-file-permissions-in-credential-subcommands","title":"AWS AWS CLI insecure file permissions in credential subcommands","severity":"high","exploited":false,"published_at":"2026-07-01T19:16:36.3+00:00","url":"https://junglewise.ai/threats/cve-2026-13769-aws-aws-cli-insecure-file-permissions-in-credential-subcommands"},{"cve":"CVE-2026-13762","cvss":9.8,"slug":"cve-2026-13762-aws-cloudfront-waf-bypass-via-http-2-request-body-fragmentation","title":"AWS CloudFront WAF bypass via HTTP/2 request body fragmentation","severity":"critical","exploited":false,"published_at":"2026-06-29T20:17:33.123+00:00","url":"https://junglewise.ai/threats/cve-2026-13762-aws-cloudfront-waf-bypass-via-http-2-request-body-fragmentation"},{"cve":"CVE-2026-7461","cvss":3.1,"epss":0.0081,"slug":"cve-2026-7461-amazon-ecs-agent-os-command-injection-in-fsx-volume-mounting","title":"GO-2026-5353 - Amazon ECS Container Agent (Windows) is vulnerable to Information Disclosure in github.com/aws/amazon-ecs-agent","severity":"high","exploited":false,"published_at":"2026-06-25T18:43:19+00:00","url":"https://junglewise.ai/threats/cve-2026-7461-amazon-ecs-agent-os-command-injection-in-fsx-volume-mounting"},{"cve":"CVE-2026-12958","cvss":7.8,"epss":0.0019,"slug":"cve-2026-12958-aws-language-servers-arbitrary-file-write-via-symlink-validation","title":"AWS Language Servers arbitrary file write via symlink validation bypass","severity":"high","exploited":false,"published_at":"2026-06-23T17:16:41.12+00:00","url":"https://junglewise.ai/threats/cve-2026-12958-aws-language-servers-arbitrary-file-write-via-symlink-validation"},{"cve":"CVE-2026-12957","cvss":7.8,"epss":0.0018,"slug":"cve-2026-12957-aws-language-servers-arbitrary-code-execution-in-trusted","title":"AWS Language Servers arbitrary code execution in trusted workspaces","severity":"high","exploited":false,"published_at":"2026-06-23T17:16:40.977+00:00","url":"https://junglewise.ai/threats/cve-2026-12957-aws-language-servers-arbitrary-code-execution-in-trusted"},{"cve":"CVE-2026-12043","cvss":8.8,"slug":"cve-2026-12043-aws-aws-c-http-memory-corruption-in-hpack-resizing","title":"AWS aws-c-http memory corruption in HPACK resizing","severity":"high","exploited":false,"published_at":"2026-06-12T19:16:26.42+00:00","url":"https://junglewise.ai/threats/cve-2026-12043-aws-aws-c-http-memory-corruption-in-hpack-resizing"},{"cve":"CVE-2026-11400","cvss":8,"epss":0.0031,"slug":"cve-2026-11400-aws-advanced-jdbc-wrapper-privilege-escalation-in","title":"AWS Advanced JDBC Wrapper privilege escalation in GlobalDatabasePlugin","severity":"high","exploited":false,"published_at":"2026-06-05T20:17:28.733+00:00","url":"https://junglewise.ai/threats/cve-2026-11400-aws-advanced-jdbc-wrapper-privilege-escalation-in"},{"cve":"CVE-2026-10584","cvss":5.9,"slug":"cve-2026-10584-aws-graph-explorer-cleartext-transmission-via-https-fallback","title":"AWS Graph Explorer cleartext transmission via HTTPS fallback","severity":"high","exploited":false,"published_at":"2026-06-02T20:16:31.757+00:00","url":"https://junglewise.ai/threats/cve-2026-10584-aws-graph-explorer-cleartext-transmission-via-https-fallback"},{"cve":"CVE-2026-9291","cvss":7.1,"epss":0.0065,"slug":"cve-2026-9291-aws-amazon-braket-python-sdk-insecure-deserialization-in-job","title":"AWS Amazon Braket Python SDK insecure deserialization in job results processing","severity":"high","exploited":false,"published_at":"2026-05-22T19:17:05.34+00:00","url":"https://junglewise.ai/threats/cve-2026-9291-aws-amazon-braket-python-sdk-insecure-deserialization-in-job"},{"cve":"CVE-2026-9255","cvss":7.8,"epss":0.0001,"slug":"cve-2026-9255-amazon-kiro-cli-unauthorized-command-execution-via-piped-stdin","title":"Amazon Kiro CLI unauthorized command execution via piped stdin","severity":"high","exploited":false,"published_at":"2026-05-22T17:16:49.767+00:00","url":"https://junglewise.ai/threats/cve-2026-9255-amazon-kiro-cli-unauthorized-command-execution-via-piped-stdin"},{"cve":"CVE-2026-8838","cvss":9.8,"epss":0.008,"slug":"cve-2026-8838-aws-amazon-redshift-python-driver-code-injection-in-vector-in","title":"AWS amazon-redshift-python-driver code injection in vector_in","severity":"critical","exploited":false,"published_at":"2026-05-18T21:16:41.623+00:00","url":"https://junglewise.ai/threats/cve-2026-8838-aws-amazon-redshift-python-driver-code-injection-in-vector-in"},{"cve":"CVE-2026-8686","cvss":7.5,"slug":"cve-2026-8686-freertos-coremqtt-denial-of-service-in-mqtt-v5-0-property-parser","title":"FreeRTOS coreMQTT denial of service in MQTT v5.0 property parser","severity":"high","exploited":false,"published_at":"2026-05-15T19:17:05.057+00:00","url":"https://junglewise.ai/threats/cve-2026-8686-freertos-coremqtt-denial-of-service-in-mqtt-v5-0-property-parser"},{"cve":"CVE-2026-7425","slug":"cve-2026-7425-amazon-freertos-plus-tcp-memory-safety-issues-in-ipv6-router","title":"Amazon FreeRTOS-Plus-TCP memory safety issues in IPv6 Router Advertisement","severity":"high","exploited":false,"published_at":"2026-04-29T19:34:40+00:00","url":"https://junglewise.ai/threats/cve-2026-7425-amazon-freertos-plus-tcp-memory-safety-issues-in-ipv6-router"}],"vendor":{"hub":true,"name":"Amazon Web Services","slug":"amazon-web-services","homepage":"https://aws.amazon.com","description":"Amazon Web Services (AWS) is a cloud computing platform providing infrastructure, platform, and software-as-a-service offerings.","url":"https://junglewise.ai/threats/vendors/amazon-web-services"},"weekly":[{"week":"2026-06-29","critical":1,"exploited":0,"vulnerabilities":3},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2026-8838","cvss":9.8,"epss":0.008,"slug":"cve-2026-8838-aws-amazon-redshift-python-driver-code-injection-in-vector-in","title":"AWS amazon-redshift-python-driver code injection in vector_in","severity":"critical","exploited":false,"published_at":"2026-05-18T21:16:41.623+00:00","url":"https://junglewise.ai/threats/cve-2026-8838-aws-amazon-redshift-python-driver-code-injection-in-vector-in"},{"cve":"CVE-2026-13762","cvss":9.8,"slug":"cve-2026-13762-aws-cloudfront-waf-bypass-via-http-2-request-body-fragmentation","title":"AWS CloudFront WAF bypass via HTTP/2 request body fragmentation","severity":"critical","exploited":false,"published_at":"2026-06-29T20:17:33.123+00:00","url":"https://junglewise.ai/threats/cve-2026-13762-aws-cloudfront-waf-bypass-via-http-2-request-body-fragmentation"},{"cve":"CVE-2026-5708","cvss":8.8,"epss":0.0084,"slug":"cve-2026-5708-aws-research-and-engineering-studio-privilege-escalation-in","title":"AWS Research and Engineering Studio privilege escalation in session creation","severity":"high","exploited":false,"published_at":"2026-04-06T22:16:25.457+00:00","url":"https://junglewise.ai/threats/cve-2026-5708-aws-research-and-engineering-studio-privilege-escalation-in"},{"cve":"CVE-2026-12043","cvss":8.8,"slug":"cve-2026-12043-aws-aws-c-http-memory-corruption-in-hpack-resizing","title":"AWS aws-c-http memory corruption in HPACK resizing","severity":"high","exploited":false,"published_at":"2026-06-12T19:16:26.42+00:00","url":"https://junglewise.ai/threats/cve-2026-12043-aws-aws-c-http-memory-corruption-in-hpack-resizing"},{"cve":"CVE-2026-11400","cvss":8,"epss":0.0031,"slug":"cve-2026-11400-aws-advanced-jdbc-wrapper-privilege-escalation-in","title":"AWS Advanced JDBC Wrapper privilege escalation in GlobalDatabasePlugin","severity":"high","exploited":false,"published_at":"2026-06-05T20:17:28.733+00:00","url":"https://junglewise.ai/threats/cve-2026-11400-aws-advanced-jdbc-wrapper-privilege-escalation-in"},{"cve":"CVE-2026-15895","cvss":7.8,"epss":0.0108,"slug":"cve-2026-15895-aws-jsii-diff-os-command-injection-in-npm-package-loading","title":"AWS jsii-diff OS command injection in npm package loading","severity":"high","exploited":false,"published_at":"2026-07-15T19:16:58.693+00:00","url":"https://junglewise.ai/threats/cve-2026-15895-aws-jsii-diff-os-command-injection-in-npm-package-loading"},{"cve":"CVE-2026-5485","cvss":7.8,"epss":0.0073,"slug":"cve-2026-5485-amazon-athena-odbc-driver-os-command-injection-in-linux","title":"Amazon Athena ODBC driver OS command injection in Linux authentication component","severity":"high","exploited":false,"published_at":"2026-04-03T21:17:12.603+00:00","url":"https://junglewise.ai/threats/cve-2026-5485-amazon-athena-odbc-driver-os-command-injection-in-linux"},{"cve":"CVE-2026-12958","cvss":7.8,"epss":0.0019,"slug":"cve-2026-12958-aws-language-servers-arbitrary-file-write-via-symlink-validation","title":"AWS Language Servers arbitrary file write via symlink validation bypass","severity":"high","exploited":false,"published_at":"2026-06-23T17:16:41.12+00:00","url":"https://junglewise.ai/threats/cve-2026-12958-aws-language-servers-arbitrary-file-write-via-symlink-validation"},{"cve":"CVE-2026-12957","cvss":7.8,"epss":0.0018,"slug":"cve-2026-12957-aws-language-servers-arbitrary-code-execution-in-trusted","title":"AWS Language Servers arbitrary code execution in trusted workspaces","severity":"high","exploited":false,"published_at":"2026-06-23T17:16:40.977+00:00","url":"https://junglewise.ai/threats/cve-2026-12957-aws-language-servers-arbitrary-code-execution-in-trusted"},{"cve":"CVE-2026-9255","cvss":7.8,"epss":0.0001,"slug":"cve-2026-9255-amazon-kiro-cli-unauthorized-command-execution-via-piped-stdin","title":"Amazon Kiro CLI unauthorized command execution via piped stdin","severity":"high","exploited":false,"published_at":"2026-05-22T17:16:49.767+00:00","url":"https://junglewise.ai/threats/cve-2026-9255-amazon-kiro-cli-unauthorized-command-execution-via-piped-stdin"}],"generated_at":"2026-09-26T16:07:00.132667+00:00","technologies":[{"name":"Amazon Web Services FreeRTOS-Plus-TCP","slug":"freertos-plus-tcp","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/freertos-plus-tcp"},{"name":"Amazon Web Services Aws-C-Io","slug":"aws-c-io","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aws-c-io"},{"name":"Amazon Web Services AWS IoT Device SDK v2 for C++","slug":"aws-iot-device-sdk-v2-for-c","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aws-iot-device-sdk-v2-for-c"},{"name":"Amazon Web Services AWS IoT Device SDK v2 for Java","slug":"aws-iot-device-sdk-v2-for-java","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aws-iot-device-sdk-v2-for-java"},{"name":"Amazon Web Services AWS IoT Device SDK v2 for Node.js","slug":"aws-iot-device-sdk-v2-for-node-js","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aws-iot-device-sdk-v2-for-node-js"},{"name":"Amazon Web Services AWS IoT Device SDK v2 for Python","slug":"aws-iot-device-sdk-v2-for-python","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aws-iot-device-sdk-v2-for-python"},{"name":"Amazon Web Services Research and Engineering Studio","slug":"research-and-engineering-studio","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/research-and-engineering-studio"}]}