CVE-2026-19111 - Insecure direct object reference in Strands Agents Tools memory tools

Published 2026-09-09T21:30:11Zf734b122e75aa45df10f6870e162379e47df72590602efc79888f1c7fdff80f1

Source metadata

Publication date
2026-09-09T21:30:11Z
Source identifier
264bb32a923829d566364eae138302baa33396e8
Public record ID
record:sha256:f734b122e75aa45df10f6870e162379e47df72590602efc79888f1c7fdff80f1

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
f734b122e75aa45df10f6870e162379e47df72590602efc79888f1c7fdff80f1
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.