The specific flaw exists within the handling of the allowed commands list. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the MCP server. Was ZDI-CAN-27969.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-fgmx-xfp3-w28p | aws-mcp has a Command Injection Remote Code Execution Vulnerability |
| Link | Providers |
|---|---|
| https://www.zerodayinitiative.com/advisories/ZDI-26-245/ |
|
Mon, 13 Apr 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 13 Apr 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aws
Aws aws-mcp-server |
|
| Vendors & Products |
Aws
Aws aws-mcp-server |
Sat, 11 Apr 2026 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | aws-mcp-server AWS CLI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of aws-mcp-server. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the allowed commands list. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the MCP server. Was ZDI-CAN-27969. | |
| Title | aws-mcp-server AWS CLI Command Injection Remote Code Execution Vulnerability | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: zdi
Published:
Updated: 2026-04-13T17:30:38.053Z
Reserved: 2026-03-27T18:10:12.060Z
Link: CVE-2026-5059
Updated: 2026-04-13T17:30:33.975Z
Status : Awaiting Analysis
Published: 2026-04-11T01:16:18.293
Modified: 2026-04-13T15:01:43.663
Link: CVE-2026-5059
No data.
OpenCVE Enrichment
Updated: 2026-04-13T12:57:03Z
Github GHSA