{"id":"CVE-2026-18953","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-18953","summary":"Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent actor…","details":"Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent actor to write arbitrary files outside the intended working directory via the savePath parameter.\n\n\n\nTo remediate this issue, users should upgrade to version 0.1.5 or later.","published":"2026-08-05T20:17:07.770","modified":"2026-08-10T13:12:47.973","cvss":{"score":8.6,"severity":"HIGH","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H"},"epss":{"score":0.00209,"percentile":0.11022,"asOf":"2026-09-08"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":null,"references":[{"type":"ADVISORY","url":"https://aws.amazon.com/security/security-bulletins/2026-075-aws/"},{"type":"ADVISORY","url":"https://github.com/awslabs/mcp/security/advisories/GHSA-66mr-jr63-2jgw"},{"type":"WEB","url":"https://pypi.org/project/awslabs.aws-transform-mcp-server/0.1.5/"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-08-10T13:12:47.973"}}