Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SDK versions >= 1.1.3 and < 1.6.1 might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments.
To mitigate this issue, users should upgrade to version 1.6.1.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SDK versions >= 1.1.3 and < 1.6.1 might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments. To mitigate this issue, users should upgrade to version 1.6.1. | |
| Title | Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages() | |
| First Time appeared |
Aws
Aws bedrock-agentcore |
|
| Weaknesses | CWE-88 | |
| CPEs | cpe:2.3:a:aws:bedrock-agentcore:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Aws
Aws bedrock-agentcore |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMZN
Published:
Updated: 2026-06-18T12:52:49.533Z
Reserved: 2026-06-17T13:55:09.204Z
Link: CVE-2026-12530
Updated: 2026-06-18T12:52:46.066Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-18T18:45:03Z