Known Vulnerabilities for Amazon-vpc-cni-k8s by AWS
Listed below are 10 of the newest known vulnerabilities associated with "Amazon-vpc-cni-k8s" by "AWS".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100308 json | Deserialization of untrusted data in the model loading component in Amazon GluonTS before 0.17.0 might allow context-dependen... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-97731 json | MinIO through 7aac2a2 does not verify that every x-amz-* header present on a request also appears in the client-supplied X-Am... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97636 json | Apache Airflow HashiCorp provider: the HashiCorp Vault secrets backend's team-scope guard can be bypassed with a user-control... | Not Provided | 2026-09-24 | 2026-09-25 |
| CVE-2026-95985 json | The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to inject crafted in... | Not Provided | 2026-09-24 | 2026-09-24 |
| CVE-2026-94384 json | Missing authorization in Amazon amazon-connect-salesforce-lambda before 5.26 allows any IAM principal with lambda:InvokeFunct... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-89332 json | Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE before version 0.8.... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89090 json | An unrecovered panic in the event stream header decoder in Amazon AWS SDK for Go v2 before release-2026-03-23 might allow an ... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89049 json | A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87912 json | A missing S3 bucket ownership verification in the AWS Security Agent plugin in Amazon aws-agents-for-devsecops before 1.1.0 m... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87911 json | An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-... | Not Provided | 2026-09-09 | 2026-09-10 |