CVE-2026-18953 | AWS aws-transform-mcp-server up to 0.1.4 get_resource savePath path traversal
A vulnerability labeled as critical has been found in AWS aws-transform-mcp-server up to 0.1.4. The impacted element is the function get_resource. The manipulation of the argument savePath results in path traversal.
This vulnerability is reported as CVE-2026-18953. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.VulDB Recent EntriesRead More