PT-2026-107261 · Amazon · Bedrock Agentcore Starter Toolkit
CVE-2026-105812
·
Published
2026-10-06
·
Updated
2026-10-07
CVSS v3.1
9.0
Critical
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Amazon Bedrock AgentCore Starter Toolkit versions prior to 0.3.14
Description
Improper control of code generation within the agent import functionality allows an authenticated actor within the same account to execute arbitrary code. This occurs when a user imports and runs or deploys a Bedrock Agent using crafted configuration values that are incorporated into generated Python source code without safe literal encoding.
Recommendations
Upgrade to version 0.3.14.
Re-import agents that were imported with an affected version using version 0.3.14 or later and replace their local and deployed output artifacts.
Fix
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bedrock Agentcore Starter Toolkit