CVE-2026-13769

Overly permissive file permissions in AWS CLI before 1.44.78 (v1) and 2.34.29 (v2) on Unix-like systems where the umask has not been configured to restrict file permissions (the default on most systems) may allow other local users on the same host to read credentials written by certain CLI subcommands (aws codeartifact login, aws iam create-virtual-mfa-device, aws deploy register). To remediate this issue, users should upgrade to AWS CLI 1.44.78 (v1) or 2.34.29 (v2) or later.
Configurations

No configuration.

History

01 Jul 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-01 19:16

Updated : 2026-07-01 20:17


NVD link : CVE-2026-13769

Mitre link : CVE-2026-13769

CVE.ORG link : CVE-2026-13769


JSON object : View

Products Affected

No product.

CWE
CWE-732

Incorrect Permission Assignment for Critical Resource