VulnSea

AWS has 20 CVEs on record between 2022 and 2026. Disclosure cadence is accelerating: 15 in the last 90 days against 3 in the 90 before. The busiest recent month was September 2026 with 12. The median CVSS is 7.2 (high), with 2 rated critical. None have a confirmed exploitation report. Most affected products: github.com/aws/aws-sdk-go (2), github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream (2), projen (2).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.2
Publish → KEV
Last 90 days
15 prev 3

Products

  • github.com/aws/aws-sdk-go 2
  • github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream 2
  • projen 2
  • @aws/agentcore 1
  • AWS Labs MySQL MCP Server 1
  • AWS Labs postgres MCP Server 1
20
Total CVEs
2
Critical
0
CISA KEV
0
Exploited

AWS vulnerabilities

CVEs affecting AWS, newest first. Open any entry for full detail, references, and exploit status.

20 CVEsRSS

CVE-2026-92943High· 8.1
4d ago

Improper validation of certificate with host mismatch in the MQTT client TLS connection layer in AWS IoT Device SDK for Python 1.5.3 through 1.6.0 on Python 3.7 and later might allow an adversary-in-the-middle actor to impersonate the AW…

Improper validation of certificate with host mismatch in the MQTT client TLS connection layer in AWS IoT Device SDK for Python 1.5.3 through 1.6.0 on Python 3.7 and later might allow an adversary-in-the-middle actor to impersonate the AW…

TwilightAWS · AWSIoTPythonSDKEPSS 0.27%via NVD
CVE-2026-86831High· 8.7
5d ago

Improper validation of pod identifier uniqueness in aws-network-policy-agent in Amazon EKS Network Policy Agent before v1.4.0 might allow an authenticated remote user to bypass NetworkPolicy enforcement on co-located pods in other namesp…

Improper validation of pod identifier uniqueness in aws-network-policy-agent in Amazon EKS Network Policy Agent before v1.4.0 might allow an authenticated remote user to bypass NetworkPolicy enforcement on co-located pods in other namesp…

TwilightAWS · aws-network-policy-agentEPSS 0.46%via NVD
CVE-2026-86830High· 7.2
1w ago

Incorrect privilege assignment in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center solution before version 1.5.1 might allow an authenticated remote user with application-level access to read, approve, modify, or r…

Incorrect privilege assignment in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center solution before version 1.5.1 might allow an authenticated remote user with application-level access to read, approve, modify, or r…

TwilightAWS · iam-identity-center-teamEPSS 0.38%via NVD
CVE-2026-89090Medium· 5.9
1w ago

An unrecovered panic in the event stream header decoder in Amazon AWS SDK for Go v2 before release-2026-03-23 might allow an unauthenticated remote actor to terminate the consuming application process via a crafted event stream response …

An unrecovered panic in the event stream header decoder in Amazon AWS SDK for Go v2 before release-2026-03-23 might allow an unauthenticated remote actor to terminate the consuming application process via a crafted event stream response …

SunlitAWS · AWS SDK for Go v2EPSS 0.31%via NVD
CVE-2026-89066High· 7.8
1w ago

Improper neutralization of special elements used in an OS command in the task synthesis component in projen before 0.103.0 might allow context-dependent attackers to execute arbitrary commands on a developer workstation or continuous int…

Improper neutralization of special elements used in an OS command in the task synthesis component in projen before 0.103.0 might allow context-dependent attackers to execute arbitrary commands on a developer workstation or continuous int…

TwilightAWS · projenEPSS 0.16%via NVD
CVE-2026-89065High· 7.1
1w ago

Relative path traversal in the generated file manifest cleanup component in projen before 0.101.37 might allow context-dependent attackers to recursively delete files and directories outside the project directory that are writable by the…

Relative path traversal in the generated file manifest cleanup component in projen before 0.101.37 might allow context-dependent attackers to recursively delete files and directories outside the project directory that are writable by the…

TwilightAWS · projenEPSS 0.15%via NVD
CVE-2026-87913Medium· 5.9
1w ago

A missing S3 bucket ownership verification in the AWS Security Agent MCP server before 0.2.0 version might allow remote attackers to obtain the private source archive of a scanned workspace, including credentials and infrastructure state…

A missing S3 bucket ownership verification in the AWS Security Agent MCP server before 0.2.0 version might allow remote attackers to obtain the private source archive of a scanned workspace, including credentials and infrastructure state…

SunlitAWS · AWS Security Agent MCP serverEPSS 0.25%via NVD
CVE-2026-89049Critical· 9.9
1w ago

Server-side request forgery in the Session Manager port forwarding functionality in AWS Systems Manager Agent

A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding to remote hosts functionality in Amazon AWS Systems Manager Agent (SSM Agent) before 3.3.4851.0 on all platforms …

MidnightAWS · Amazon SSM AgentEPSS 0.36%via CVEORG
CVE-2026-87912Medium· 5.9
1w ago

Missing S3 bucket ownership verification in the AWS Security Agent plugin for aws-agents-for-devsecops

A missing S3 bucket ownership verification in the AWS Security Agent plugin in Amazon aws-agents-for-devsecops before 1.1.0 might allow remote attackers to obtain the private source archive of a scanned workspace, including credentials a…

SunlitAWS · AWS Security Agent pluginEPSS 0.25%via CVEORG
CVE-2026-85788Medium· 5.5
1w ago

Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allow context-dependent actors to bypass the read-only enforcement gate and reach file-read and file-write SQL sinks via …

Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allow context-dependent actors to bypass the read-only enforcement gate and reach file-read and file-write SQL sinks via …

SunlitAWS · AWS Labs MySQL MCP ServerEPSS 0.13%via NVD
CVE-2026-87911Critical· 9.6
1w ago

An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-server before 1.1.7 might allow an unauthenticated actor to execute operating system commands on the host of a s…

An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-server before 1.1.7 might allow an unauthenticated actor to execute operating system commands on the host of a s…

MidnightAWS · AWS Labs postgres MCP ServerEPSS 0.99%via NVD
CVE-2026-84942High· 8.7
1w ago

Improper input validation in the Vega expression function implementation in OpenSearch Dashboards allows a remote authenticated actor with dashboard write permissions to execute arbitrary JavaScript in the context of other users' browser…

Improper input validation in the Vega expression function implementation in OpenSearch Dashboards allows a remote authenticated actor with dashboard write permissions to execute arbitrary JavaScript in the context of other users' browser…

TwilightAWS · Amazon OpenSearch ServiceEPSS 0.33%via NVD
GO-2026-6093None
1mo ago

AWS CDK CodeBuild S3 Log Encryption Boolean Inversion in github.com/aws/aws-cdk-go/awscdk

AWS CDK CodeBuild S3 Log Encryption Boolean Inversion in github.com/aws/aws-cdk-go/awscdk

Sunlitaws · github.com/aws/aws-cdk-go/awscdkvia OSV
CVE-2026-11393High· 9.0
1mo ago

AgentCore CLI Bedrock Agent Import Vulnerable to Code Injection via Improper Triple-Quote Escaping

AgentCore CLI Bedrock Agent Import Vulnerable to Code Injection via Improper Triple-Quote Escaping

Twilightaws · @aws/agentcoreEPSS 0.34%via GHSA
GO-2026-5764None
2mo ago

DoS due to Panic in AWS SDK for Go v2 SDK EventStream Decoder in github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream

DoS due to Panic in AWS SDK for Go v2 SDK EventStream Decoder in github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream

Sunlitaws · github.com/aws/aws-sdk-go-v2/aws/protocol/eventstreamvia OSV
CVE-2026-11401High· 8.0
3mo ago

AWS Advanced Go Wrapper has Privilege Escalation in Aurora PostgreSQL instance

AWS Advanced Go Wrapper has Privilege Escalation in Aurora PostgreSQL instance

Twilightaws · github.com/aws/aws-advanced-go-wrapper/awssql/v2EPSS 0.30%via GHSA
CVE-2026-7461High· 7.2
4mo ago

Amazon ECS Container Agent (Windows) is vulnerable to Information Disclosure

Amazon ECS Container Agent (Windows) is vulnerable to Information Disclosure

Twilightaws · github.com/aws/amazon-ecs-agentEPSS 0.55%via OSV
GHSA-xmrv-pmrh-hhx2Medium· 5.9
5mo ago

Denial of Service due to Panic in AWS SDK for Go v2 SDK EventStream Decoder

Denial of Service due to Panic in AWS SDK for Go v2 SDK EventStream Decoder

Sunlitaws · github.com/aws/aws-sdk-go-v2/aws/protocol/eventstreamvia OSV
CVE-2022-2582Medium· 4.3
3y ago

AWS S3 Crypto SDK sends an unencrypted hash of the plaintext alongside the ciphertext as a metadata field

AWS S3 Crypto SDK sends an unencrypted hash of the plaintext alongside the ciphertext as a metadata field

Sunlitaws · github.com/aws/aws-sdk-goEPSS 0.48%via OSV
CVE-2020-8912Low· 2.5
4y ago

In-band key negotiation issue in AWS S3 Crypto SDK for golang

In-band key negotiation issue in AWS S3 Crypto SDK for golang

Sunlitaws · github.com/aws/aws-sdk-goEPSS 0.23%via OSV
AWS vulnerabilities (CVEs) · VulnSea