Aws Smithy Json Aws Smithy Json

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Aws Smithy Json.

By the Year

In 2026 there have been 1 vulnerability in Aws Smithy Json with an average score of 7.5 out of ten.

Year Vulnerabilities Average Score
2026 1 7.50

It may take a day or so for new Aws Smithy Json vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Aws Smithy Json Security Vulnerabilities

aws-smithy-json <=0.62.6 Recursion DoS via JSON payload
CVE-2026-18140 7.5 - High - July 30, 2026

Uncontrolled recursion in the unknown-key skip path of the aws-smithy-json runtime crate before 0.62.7, which the smithy-rs code generator invokes from every generated struct deserializer, might allow remote unauthenticated users to cause a denial of service (process abort via stack exhaustion) via a single small HTTP request containing deeply nested JSON to a smithy-rs generated server. To remediate this issue, users should upgrade to aws-smithy-json 0.62.7 or later and rebuild.

Stack Exhaustion

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Aws Smithy Json or by Aws? Click the Watch button to subscribe.

Aws
Vendor

subscribe