Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.8
CVE-2026-18953
- EPSS 0.14%
- Veröffentlicht 05.08.2026 19:33:10
- Zuletzt bearbeitet 10.08.2026 13:12:47
Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent actor to write arbitrary files outside the intended working directory ...
1