Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Andrew Asseily

#42436of 56,330
6.8Total CVSS
Vulnerabilities · 1
PT-2026-54637
6.8
2026-07-01
Amazon · Aws Cli · CVE-2026-13769
**Name of the Vulnerable Software and Affected Versions** AWS CLI versions prior to 1.44.78 (v1) AWS CLI versions prior to 2.34.29 (v2) **Description** On Unix-like systems where the umask is not configured to restrict file permissions, overly permissive file permissions may allow local users on the same host to read credentials. This occurs when certain CLI subcommands are used, specifically 'aws codeartifact login', 'aws iam create-virtual-mfa-device', and 'aws deploy register'. **Recommendations** Upgrade to AWS CLI version 1.44.78 (v1) or later. Upgrade to AWS CLI version 2.34.29 (v2) or later.