VYPR

awslabs.amazon-mq-mcp-server

by Amazon

CVEs (1)

  • CVE-2026-18655MedAug 3, 2026
    risk 0.00cvss 6.5epss 0.00

    Improper restriction of intended endpoints in the RabbitMQ broker connection tools of the Amazon MQ MCP Server (awslabs.amazon-mq-mcp-server) before 2.0.24 may allow a remote unauthenticated actor (via prompt injection) to obtain Amazon MQ for RabbitMQ broker credentials or…