← العودة للجدول
CVE-2026-18140
CVE-2026-18140 — aws-smithy-json: Uncontrolled recursion in the aws-smithy-json unknown-key skip
📅 2026-10-03
🟠 High 🔥 No GHSA Vulnerability Cloud CVSS 7.5

📋 الوصف الكامل

### Summary Smithy-RS is a Rust code generation and runtime framework that generates HTTP clients and servers from Smithy interface definitions, powering the AWS SDK for Rust and custom service implementations. An issue exists which allows uncontrolled recursion in the unknown-key skip path of the Amazon aws-smithy-json runtime crate in versions 0.62.6 and earlier. ### Impact Uncontrolled recursi

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-18140

📡 المصدر

GHSA

✅ الحلول والتخفيف

Update to v0.62.6

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←