Known Vulnerabilities for Aws Encryption Sdk by Amazon
Listed below are 1 of the newest known vulnerabilities associated with "Aws Encryption Sdk" by "Amazon".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34240 | JOSE is a Javascript Object Signing and Encryption (JOSE) library. Prior to version 0.3.5+1, a vulnerability in jose could al... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2026-34236 | Auth0-PHP is a PHP SDK for Auth0 Authentication and Management APIs. From version 8.0.0 to before version 8.19.0, in applicat... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2026-34204 | MinIO is a high-performance object storage system. Prior to version RELEASE.2026-03-26T21-24-40Z, a flaw in extractMetadataFr... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2026-33867 | WWBN AVideo is an open source video platform. In versions up to and including 26.0, AVideo allows content owners to password-... | Not Provided | 2026-03-27 | 2026-03-27 |
| CVE-2026-33505 | Ory Keto is am open source authorization server for managing permissions at scale. Prior to version 26.2.0, the GetRelationsh... | Not Provided | 2026-03-26 | 2026-03-30 |
| CVE-2026-33503 | Ory Kratos is an identity, user management and authentication system for cloud services. Prior to version 26.2.0, the ListCou... | Not Provided | 2026-03-26 | 2026-04-01 |
| CVE-2026-33306 | bcrypt-ruby is a Ruby binding for the OpenBSD bcrypt() password hashing algorithm. Prior to version 3.1.22, an integer overfl... | Not Provided | 2026-03-24 | 2026-03-24 |
| CVE-2026-29140 | SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to cause attacker-controlled certificates to be used f... | Not Provided | 2026-04-02 | 2026-04-02 |
| CVE-2026-28377 | A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potent... | Not Provided | 2026-03-26 | 2026-03-27 |
| CVE-2026-20042 | A vulnerability in the configuration backup feature of Cisco Nexus Dashboard could allow an attacker who has the encryption p... | Not Provided | 2026-04-01 | 2026-04-01 |