CVE-2026-18953 | AWS aws-transform-mcp-server up to 0.1.4 get_resource savePath path traversal

SecurityVulns

A vulnerability labeled as critical has been found in AWS aws-transform-mcp-server up to 0.1.4. The impacted element is the function get_resource. The manipulation of the argument savePath results in path traversal.

This vulnerability is reported as CVE-2026-18953. The attack can be launched remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More