Skip to content
AWS Strands Agents Tools Exposed to Multiple CVEs in 23 Days

AWS Strands Agents Tools Exposed to Multiple CVEs in 23 Days

First seen 22 Aug 2026, 21:16 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •August 23, 2026 at 20:17 UTC
  • •AWS Strands Agents Tools had four CVEs published between July 15 and August 6, 2026.
  • •The vulnerabilities expose security-sensitive parameters, enabling credential exfiltration and command execution.
  • •Remediations have been applied, but the root cause indicates a broader design flaw in the system.

Between July 15 and August 6, 2026, AWS Strands Agents Tools received four CVEs due to a design flaw exposing security-sensitive parameters as LLM-controllable inputs. The vulnerabilities include CVE-2026-15746 (credential exfiltration), CVE-2026-18394 (proxy hijacking), CVE-2026-18733 (arbitrary command execution), and CVE-2026-19111 (tenant-memory forgery). These flaws affect tools like elasticsearch_memory and http_request, allowing attackers to manipulate parameters and execute commands or access unauthorized data. The severity of these vulnerabilities ranges from 6.5 to 8.8 on the CVSS scale, indicating significant risks to cloud, fintech, and crypto/DeFi infrastructures. Remediations have been implemented, but the systemic nature of the flaws raises concerns about agent identity governance. AWS has classified these issues under CWE-1427, highlighting the risks associated with LLM-integrated systems.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 45d ago How this analysis works

Timeline

2026-07-15
CVE-2026-15746 published
Credential exfiltration vulnerability in elasticsearch_memory tool exposed sensitive connection parameters.
Cryptorank
2026-07-31
CVE-2026-18394 published
http_request tool vulnerability allowed prompt injection to set proxies to attacker-controlled endpoints.
Forkast.News
2026-08-03
CVE-2026-18733 published
Shell tool vulnerability exposed a parameter allowing arbitrary OS command execution without consent.
Forkast.News
2026-08-06
CVE-2026-19111 published
Vulnerability in multiple memory tools allowed unauthorized access to tenant data via crafted prompts.
Forkast.News

More articles in this cluster (6)

Following this threat?

Track AWS and CVE-2026-15746 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed