← العودة للجدول
CVE-2026-7191
CVE-2026-7191- Arbitrary Code Execution via Sandbox Bypass in QnABot on AWS
📅 2026-04-27 23:21:23
🔴 Critical 🔥 No AWS Security Exploit OT/ICS 🎯 EPSS 0.09%

📋 الوصف الكامل

Bulletin ID: 2026-020-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/27 13:15 PM PDT Description: QnABot on AWS is an open-source solution that provides a multi-channel, multi-language conversational interface powered by Amazon Lex, Amazon OpenSearch Service, and optionally Amazon Bedrock. We identified CVE-2026-7191, where the improper use of the static-e

💻 الأنظمة المتأثرة

CVE-2026-7191- Arbitrary Code

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-7191

📡 المصدر

AWS Security

✅ الحلول والتخفيف

Refer to CVE-2026-7191 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←