CVE-2026-18830

Insufficient input validation in Amazon Bedrock AgentCore harness might allow an authenticated remote user to execute configured tools bypassing model invocation and security controls via crafted content blocks in conversation messages. AWS has addressed this issue. No customer action is required.
Configurations

No configuration.

History

04 Aug 2026, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-08-04 18:16

Updated : 2026-08-04 19:16


NVD link : CVE-2026-18830

Mitre link : CVE-2026-18830

CVE.ORG link : CVE-2026-18830


JSON object : View

Products Affected

No product.

CWE
CWE-1287

Improper Validation of Specified Type of Input