CVE-2026-16584 - AWS API MCP Server Security Policy Bypass via Startup Failure

Published 2026-08-20T21:35:57Zfb7791a7c14e5ed9bf2eb1391c2b83e526edb6fc41eab662f488dc9e92a0f272

Source metadata

Publication date
2026-08-20T21:35:57Z
Source identifier
5f7680ecaa15214ccb83ddbb18950b4fb2b3437f
Public record ID
record:sha256:fb7791a7c14e5ed9bf2eb1391c2b83e526edb6fc41eab662f488dc9e92a0f272

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
fb7791a7c14e5ed9bf2eb1391c2b83e526edb6fc41eab662f488dc9e92a0f272
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.

Record · CVE-2026-16584 - AWS API MCP Server Security Policy Bypass via Startup Failure · Baitaphish