Known Vulnerabilities for Amazon SSM Agent by AWS
Listed below are 6 of the newest known vulnerabilities associated with "Amazon SSM Agent" by "AWS".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89049 json | A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87912 json | A missing S3 bucket ownership verification in the AWS Security Agent plugin in Amazon aws-agents-for-devsecops before 1.1.0 m... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-81849 json | Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.... | Not Provided | 2026-08-28 | 2026-08-31 |
| CVE-2026-78379 json | Improper neutralization of input used for LLM prompting in the python_repl tool in Amazon Strands Agents Tools before 0.8.5 m... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-18733 json | A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors to e... | Not Provided | 2026-08-03 | 2026-08-04 |
| CVE-2026-15737 json | AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Am... | Not Provided | 2026-07-16 | 2026-07-16 |