PT-2026-67485 · Amazon · Amazon-Mq-Mcp-Server

CVE-2026-18655

·

Published

2026-08-03

·

Updated

2026-09-11

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Amazon MQ MCP Server (awslabs.amazon-mq-mcp-server) versions prior to 2.0.24
Description Improper restriction of intended endpoints in the RabbitMQ broker connection tools may allow a remote unauthenticated actor to obtain Amazon MQ for RabbitMQ broker credentials or OAuth access tokens. This is achieved via prompt injection, where tokens or credentials are sent to a crafted endpoint controlled through a broker hostname introduced in the MCP client context.
Recommendations Upgrade to version 2.0.24.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-18655

Affected Products

Amazon-Mq-Mcp-Server