Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

aws.amazon.com

Security Bulletins

Get the latest updates from Security Bulletins directly as they happen.

Follow now 516 followers

Latest posts

Last updated 3 days ago

CVE-2026-16796 - Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()

3 days ago

Bulletin ID: 2026-065-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service

3 days ago

Bulletin ID: 2026-064-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-16584 - AWS API MCP Server Security Policy Bypass via Startup Failure

3 days ago

Bulletin ID: 2026-063-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-16317 and CVE-2026-16318: Issues with s2n-tls: an open-source implementation of the TLS/SSL protocols

5 days ago

Bulletin ID: 2026-062-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15957 - Uncontrolled recursion in smithy-rs generated JSON, CBOR, and XML deserializers allows unauthenticated remote denial of service via recursive shapes

5 days ago

Bulletin ID: 2026-061-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15415 - Path traversal and arbitrary file write in the workflow linters of aws-healthomics-mcp-server

9 days ago

Bulletin ID: 2026-060-AWS Scope: AWS Content Type: Important (requires attention) / Informational...

CVE-2026-12283 - Issue with Athena Federated Query Synapse Connector

9 days ago

Bulletin ID: 2026-059-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15895: OS command injection in jsii-diff in AWS jsii

10 days ago

Bulletin ID: 2026-057-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15737 - Sensitive content disclosure via OpenTelemetry spans in AgentCore Python SDK

10 days ago

Bulletin ID: 2026-058-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15746 - Credential disclosure in Strands Agents Tools elasticsearch_memory tool

11 days ago

Bulletin ID: 2026-056-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15738 - Issue with AWS Load Balancer Controller Cross-Namespace Traffic Interception via HTTPRoute/GRPCRoute Priority Ordering

11 days ago

Bulletin ID: 2026-055-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...

CVE-2026-15643 - AWS HealthLake MCP Server SSRF via Unvalidated Pagination URL

12 days ago

Bulletin ID: 2026-054-AWS Scope: AWS Content Type: Important (requires attention) Publication Date...