---
id: CVE-2026-85654
title: >-
  Improper neutralization of special elements used in a template engine in the
  CDK generator in Amazon awslabs.dynamodb-mcp-server before 2.1.6 might allow a
  context-dependent actor to execute arbitrary code on the host that deploys the
  ge…
summary: >-
  Improper neutralization of special elements used in a template engine in the
  CDK generator in Amazon awslabs.dynamodb-mcp-server before 2.1.6 might allow a
  context-dependent actor to execute arbitrary code on the host that deploys the
  ge…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-1336
published: '2026-09-04'
updated: '2026-09-08'
sourceUpdated: '2026-09-08T14:00:33.017'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-85654'
references:
  - url: 'https://aws.amazon.com/security/security-bulletins/2026-097-aws/'
    label: ff89ba41-3aa1-4d27-914a-91399e9639e5
  - url: 'https://pypi.org/project/awslabs.dynamodb-mcp-server/2.1.6/'
    label: ff89ba41-3aa1-4d27-914a-91399e9639e5
tags:
  - nvd
epss: 0.00212
epssPercentile: 0.10168
ingestedAt: '2026-09-08T15:33:26.964Z'
---

## Overview

Improper neutralization of special elements used in a template engine in the CDK generator in Amazon awslabs.dynamodb-mcp-server before 2.1.6 might allow a context-dependent actor to execute arbitrary code on the host that deploys the generated application via crafted table, index, or attribute names in a data model file.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
