B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

[High] CVE-2026-11417 – OS command injection in the NodejsFunction local bundling pipeline in aws-cdk-li...

High CVE-2026-11417 OS command injection in the NodejsFunction local bundling pipeline in aws-cdk-lib before 2.245.0 (2.246.0 on Windows) might allow an actor who controls the value of one or more bundling properties (externalModules, define, loader, inject, or esbuildArgs) to execute arbitrary...

Original-Artikel öffnen Zurück zur Übersicht