Command Execution Vulnerability in AWS Bedrock AgentCore Python SDK
CVE-2026-12530
8.4HIGH
What is CVE-2026-12530?
An improper neutralization of argument delimiters in the install_packages() method of AWS Bedrock AgentCore Python SDK versions 1.1.3 through 1.6.0 could allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox. This security flaw highlights the importance of validating package name arguments to prevent unauthorized command execution.
Affected Version(s)
bedrock-agentcore 1.1.3 < 1.6.1
