Known Vulnerabilities for Aws Encryption Sdk by Amazon
Listed below are 2 of the newest known vulnerabilities associated with "Aws Encryption Sdk" by "Amazon".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88032 json | A use-after-free in the reactive client-side encryption component of the MongoDB Java Driver can cause native resources to be... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87930 json | MaxSite CMS through 109.6 passes the ci_session cookie to unserialize() without class restrictions, allowing unauthenticated ... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87929 json | MaxSite CMS through 109.6 ships with a hardcoded session encryption key in application/config/config.php that is never change... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87735 json | An issue was discovered in the mirage-crypto-pk package before 2.3.0 for OCaml. There is an undocumented exception for a smal... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86597 json | Insertion of sensitive information into log files in the Snowflake Python, Go, JDBC, Node.js, PHP PDO, and ODBC drivers allow... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-85544 json | There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-85147 json | SmartIT Desktop Manager developed by Lightstar has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote atta... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-84971 json | Improper handling of an unexpected value size in the decryption path of a client-side encryption library can cause a failed i... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84962 json | An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticated Google Cloud... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84185 json | A flaw was found in the jwcrypto library, which is used for implementing Javascript Object Signing and Encryption (JOSE) stan... | Not Provided | 2026-09-03 | 2026-09-04 |