AWS vulnerabilities
6 CVEs tracked
AWS appears in our reporting within the context of both novel product flaws and supply chain threats. A critical flaw in the 'Kiro' AI coding tool allowed hidden web text to rewrite its configuration and execute code remotely, bypassing approval prompts. Concurrently, a supply chain attack on npm packages (Leo Platform) targeting AWS credentials by stealing CI runner memory has been observed. On the vulnerability front, CVE-2026-16584 in AWS API MCP Server allows security policy bypass, while CVE-2026-16796 in the Bedrock AgentCore SDK leads to arbitrary command execution. Defenders should prioritize applying urgent updates for Kiro, monitor CI environments for suspicious npm installations, and harden authorization controls, especially on AWS API MCP and Bedrock integrations.
Azərbaycanca: AWS hesabatlarımızda həm yeni məhsul boşluğu, həm də təchizat zənciri təhdidləri kontekstində önə çıxır. “Kiro” AI kod alətində gizli veb mətn vasitəsilə konfiqurasiyanı dəyişib uzaqdan kod icrasına yol açan kritik bir qüsur aşkar edilib. Eyni zamanda, kompromatə olunmuş npm paketləri vasitəsilə CI runner yaddaşından AWS etimadnamələrini oğurlayan “Leo Platform” təchizat zənciri hücumu müşahidə olunur. Zəifliklər baxımından AWS API MCP Server-də təhlükəsizlik siyasətindən yan keçməyə imkan verən CVE-2026-16584, Bedrock AgentCore SDK-da isə ixtiyari əmr icrasına səbəb olan CVE-2026-16796 diqqət mərkəzindədir. Müdafiəçilər “Kiro” üçün təcili yeniləmələri tətbiq etməli, CI mühitlərində şübhəli npm quraşdırmalarını monitorinq etməli və xüsusilə AWS API MCP ile Bedrock inteqrasiyalarında səlahiyyət idarəetməsini sərtləşdirməlidir.
This vendor's CVEs6
This hub is built from skopnix's own reporting on AWS: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.