CVE-2026-18954 - Incorrect authorization in the aggregation pipeline tool in Amazon AWS Labs DocumentDB MCP Server

Published 2026-09-09T21:30:11Zffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e

Source metadata

Publication date
2026-09-09T21:30:11Z
Source identifier
6607269944d43dc0f46ffcbd4457e7c4bca06771
Public record ID
record:sha256:ffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
ffc47253e8384ba0b421bfd7ecbd56b3677fd4c0536820c5fa4bc2a76e88a92e
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.