Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

aws.amazon.com

Security Bulletins

Get the latest updates from Security Bulletins directly as they happen.

Follow now 470 followers

Latest posts

Last updated 1 day ago

Issue with tough, versions prior to 0.20.0 (Multiple CVEs)

1 day ago

Publication Date: 2025/03/27 02:30PM PDT Description The Update Framework (TUF) is a...

Issues with Kubernetes ingress-nginx controller (Multiple CVEs)

4 days ago

Publication Date: 2025/03/24 02:15 PM PDT Description Ingress Controllers are applications within...

Issue with the AWS CDK CLI and custom credential plugins (CVE-2025-2598)

8 days ago

Publication Date: 2025/03/21 07:00 AM PDT Description AWS identified CVE-2025-2598, an issue...

Issue with Temporary elevated access management (TEAM) - CVE-2025-1969

24 days ago

Publication Date: 2025/03/04 10:30 AM PST Description Improper request input validation in...

Path traversal issue in Deep Java Library - (CVE-2025-0851)

about 2 months ago

Publication Date: 2025/01/29 1:30 PM PST AWS identified CVE-2025-0851, a path traversal...

Issue with AWS Sign-in IAM User Login Flow – Possible Username Enumeration (CVE-2025-0693)

2 months ago

Publication Date: 2025/01/23 1:30 PM PDT We have identified CVE-2025-0693 in the...

Issue with Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV (CVE-2025-0500 and CVE-2025-0501)

2 months ago

Publication Date: 2025/01/15 10:30AM PST Description: AWS identified two issues in specific...

Issue with RedShift JDBC Driver, Python Connector and ODBC Driver - (CVE-2024-12744, CVE-2024-12745, CVE-2024-12746)

3 months ago

Publication Date: 2024/12/24 10:00AM PST AWS has identified the following issues within...

Issue with DynamoDB local - CVE-2022-1471

4 months ago

Publication Date: 2024/12/11 2:00PM PST AWS is aware of CVE-2022-1471 in SnakeYaml...

Issue with data.all (Multiple CVEs)

5 months ago

Publication Date: 2024/11/8 4:00 PM PDT Data.all is an open source development...

CVE-2024-8901 - missing JWT issuer and signer validation in aws-alb-route-directive-adapter-for-istio

5 months ago

Publication Date: 2024/10/21 4:00 PM PDT The AWS ALB Route Directive Adapter...

CVE-2024-10125 - missing JWT issuer and signer validation in aws-alb-identity-aspnetcore

5 months ago

Publication Date: 2024/10/21 4:00 PM PDT Description: The Amazon.ApplicationLoadBalancer.Identity.AspNetCore repo contains Middleware...