CVE-2026-18954 - Incorrect authorization in the aggregation pipeline tool in Amazon AWS Labs DocumentDB MCP Server
Published 2026-09-09T21:30:11Z•ffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e
Source metadata
- Publication date
- 2026-09-09T21:30:11Z
- Source identifier
- 6607269944d43dc0f46ffcbd4457e7c4bca06771
- Public record ID
- record:sha256:ffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e
This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.
Evidence and limitations
- Source ID
- aws_security_bulletins
- Record identifier
- ffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e
- Record type
- Source metadata
This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.