Known Vulnerabilities for Amazon Pay by Ec-cube
Listed below are 1 of the newest known vulnerabilities associated with "Amazon Pay" by "Ec-cube".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89332 json | Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE before version 0.8.... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89090 json | An unrecovered panic in the event stream header decoder in Amazon AWS SDK for Go v2 before release-2026-03-23 might allow an ... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89049 json | A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87912 json | A missing S3 bucket ownership verification in the AWS Security Agent plugin in Amazon aws-agents-for-devsecops before 1.1.0 m... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87911 json | An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-... | Not Provided | 2026-09-09 | 2026-09-10 |
| CVE-2026-86175 json | NetBox through 4.7.0 fails to redact sensitive data source backend credentials in REST and GraphQL API responses. Authenticat... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-85788 json | Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allow con... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-85787 json | An incomplete list of disallowed inputs in the SQL validation component in Amazon awslabs postgres-mcp-server before version... | Not Provided | 2026-09-04 | 2026-09-08 |
| CVE-2026-85786 json | Improper handling of highly compressed data in Amazon ion-java before 1.12.1 might allow remote attackers to cause a denial o... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85781 json | Unverified ownership of a storage access point in the volume deletion component of the Amazon EFS CSI Driver before v3.4.1 mi... | Not Provided | 2026-09-04 | 2026-09-04 |