CLEANSTART-2026-ZL11893
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
Security fixes for CVE-2026-41080, CVE-2026-45186 applied in versions: 2.35.9-r1, 2.35.9-r2
aws-cdk-lib: OS Command Injection in NodejsFunction Docker Bundling
CVEs:GHSA-vcrf-j523-4mrf
AWS CLI: Overly permissive File Permissions
CVEs:GHSA-wfp6-f47h-hxc3
AWS CDK CodeBuild S3 Log Encryption Boolean Inversion
CVEs:GHSA-464c-974j-9xm6
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.