VDB
GCVE-110-CLOUD-2025-0138
GCVE-110-CLOUD-2025-0138
Advisory Published
A vulnerability in the Amazon ECS agent could allow an introspection server to be accessed off-host.
This information disclosure issue, if exploited, could allow another instance in the same security
group to access the server's data. The vulnerability does not affect instances where off-host access
is set to 'false'. The issue has been patched in version 1.97.1 of the ECS agent.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| AWS | ECS | — | — |
References
Browse GCVE Records
67,407 records in the GCVE database · Updated August 11, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.