All 2 CVE vulnerabilities found in bedrock-agentcore-starter-toolkit, with AI-generated Chinese analysis, references, and POCs.
Vendor: aws
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-106032 | Server-side request forgery and local file read via unrestricted external OpenAPI reference resolution in Bedrock AgentCore Starter Toolkit agent import CWE-918 | 5.7 | Medium | 2026-10-06 |
| CVE-2026-105812 | Code injection via unencoded configuration values during Python code generation in Bedrock AgentCore Starter Toolkit agent import CWE-94 | 9.0 | Critical | 2026-10-06 |
All 2 known CVE vulnerabilities affecting bedrock-agentcore-starter-toolkit with full Chinese analysis, references, and POCs where available.