Insufficient input validation in Amazon Bedrock AgentCore harness might allow an authenticated remote user to execute configured tools bypassing model invocation and security controls via crafted content blocks in conversation messages. AWS has addressed this issue. No customer action is required.
References
Configurations
No configuration.
History
04 Aug 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-08-04 18:16
Updated : 2026-08-04 19:16
NVD link : CVE-2026-18830
Mitre link : CVE-2026-18830
CVE.ORG link : CVE-2026-18830
JSON object : View
Products Affected
No product.
CWE
CWE-1287
Improper Validation of Specified Type of Input
