Bedrock Agentcore Aws Bedrock Agentcore

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Aws Bedrock Agentcore.

By the Year

In 2026 there have been 2 vulnerabilities in Aws Bedrock Agentcore with an average score of 6.5 out of ten.

Year Vulnerabilities Average Score
2026 2 6.50

It may take a day or so for new Bedrock Agentcore vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Aws Bedrock Agentcore Security Vulnerabilities

AWS Bedrock AgentCore SDK 1.4.8/1.5.0 Logleaks via OT Span Attrs
CVE-2026-15737 5.7 - Medium - July 16, 2026

AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform. Unintended logging of sensitive user content in the OpenTelemetry instrumentation in AWS Bedrock AgentCore Python SDK versions 1.4.8 and 1.5.0 might allow a local authenticated user with access to CloudWatch Logs to access raw user prompts and agent responses containing sensitive data via span attributes. The SDK wrote raw user prompts and complete agent responses into OpenTelemetry span attributes on every invocation without filtering or masking. These spans flow into the customer's aws/spans CloudWatch log group, exposing sensitive content to any principal with log read access. We recommend you upgrade to version 1.5.1 or later. Users who ran affected versions should also review and purge sensitive content from their aws/spans CloudWatch log groups.

Insertion of Sensitive Information into Log File

AWS Bedrock AgentCore SDK 1.1.3-1.6.1 Remote Cmd via install_packages
CVE-2026-12530 7.3 - High - June 17, 2026

Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SDK versions >= 1.1.3 and < 1.6.1 might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments. To mitigate this issue, users should upgrade to version 1.6.1.

Argument Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Aws Bedrock Agentcore or by Aws? Click the Watch button to subscribe.

Aws
Vendor

subscribe