VYPR

security-agent-mcp-server

by AWS

CVEs (1)

  • CVE-2026-97662HigOct 1, 2026
    risk 0.53cvss 8.2epss —

    An argument injection issue in the diff scan operation in AWS security-agent-mcp-server before version 0.2.0 might allow context-dependent threat actors to create, overwrite, or truncate arbitrary files on the host outside the intended workspace directory via a crafted reference…