VYPR

Amplify CLI

by Amazon

CVEs (1)

  • CVE-2024-28056CriApr 15, 2024
    risk 0.57cvss 9.8epss 0.02

    Amazon AWS Amplify CLI before 12.10.1 incorrectly configures the role trust policy of IAM roles associated with Amplify projects. When the Authentication component is removed from an Amplify project, a Condition property is removed but "Effect":"Allow" remains present, and…