๐Ÿ” CVE Alert

CVE-2026-105812

CRITICAL 9.0

Code injection via unencoded configuration values during Python code generation in Bedrock AgentCore Starter Toolkit agent import

CVSS Score
9.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper control of code generation in the agent import functionality of Amazon Bedrock AgentCore Starter Toolkit before 0.3.14 might allow an authenticated same-account actor to execute arbitrary code when a user imports and runs or deploys a Bedrock Agent, via crafted configuration values incorporated into generated Python source without safe literal encoding. To remediate this issue, users should upgrade to version 0.3.14. Because this issue persists into generated source, upgrading alone is not sufficient: agents imported with an affected version must be re-imported with version 0.3.14 or later and their local and deployed output artifacts replaced.

CWE CWE-94
Vendor aws
Product bedrock-agentcore-starter-toolkit
Published Oct 6, 2026
Stay Ahead of the Next One

Get instant alerts for aws bedrock-agentcore-starter-toolkit

Be the first to know when new critical vulnerabilities affecting aws bedrock-agentcore-starter-toolkit are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

aws / bedrock-agentcore-starter-toolkit
0.1.4 โ‰ค 0.3.13

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
pypi.org: https://pypi.org/project/bedrock-agentcore-starter-toolkit/0.3.14/ aws.amazon.com: https://aws.amazon.com/security/security-bulletins/2026-127-aws/