HighVulnerability
CVE-2026-97662 - Argument injection in AWS security-agent-mcp-server diff scan
- Published
- Record updated
Summary
CVE-2026-97662 is an argument injection flaw in the diff scan operation of security-agent-mcp-server, an open-source MCP server published by AWS in the awslabs/mcp repository. Affected versions are 0.1.1 up to but not including 0.2.0. A crafted reference value is parsed as a command-line option instead of a revision, letting a context-dependent actor create, overwrite, or truncate arbitrary files on the host outside the workspace directory and bypass the server's workspace-confinement control.
Mitigation
The source does not state a fix yet. Check the original advisory for updates.
Related items
- InfoHow to keep AI agents within their permissionsSame vendor · BleepingComputer
- Medium'AgentCorruption' Puts AWS Environments At Risk With Single PromptSame vendor · Dark Reading
- InfoSpaceXAI backs Omarchy, the controversial Linux distro, with $1.5 million in computeSame vendor · The Verge (AI)
- MediumAWS’s repeated problems with AI agent controls illustrates the autonomous agent dilemmaSame vendor · CSO Online
- InfoAWS takes aim at runaway AI agent behavior with Strands BoxSame vendor · CSO Online