bedrock-agentcore vulnerabilities
CVEs whose affected-version data names the bedrock-agentcore package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-16796High· 7.3AWS Bedrock AgentCore: Improper neutralization of argument delimiters in the Python SDK install_packages()
AWS Bedrock AgentCore: Improper neutralization of argument delimiters in the Python SDK install_packages()
▾ Twilightbedrock-agentcore · bedrock-agentcoreEPSS 0.73%via GHSA
CVE-2026-12530High· 7.3Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()
Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()
▾ Twilightbedrock-agentcore · bedrock-agentcoreEPSS 0.34%via GHSA