Kryptovaluta-ticker:
sysadmin fra 4sysops.com

Amazon Q vulnerability allowed malicious Git repositories to steal cloud credentials

IT News
Friday at 18:15
5 Visninger
0 Kommentarer
Amazon Q vulnerability allowed malicious Git repositories to steal cloud credentials

A high-severity vulnerability in the Amazon Q Developer extension for Visual Studio Code allowed attackers to execute arbitrary code on a developer's workstation. The flaw, tracked as CVE-2026-12957, stemmed from the automatic loading of Model Context Protocol (MCP) configurations found within a repository's hidden directory. When a developer...

Læs hele artiklen hos kilden.

Var dette nyttigt?
Del:

Kommentarer (0)

Vennligst logg inn for å skrive en kommentar

Ingen kommentarer ennå. Bli den første til å kommentere!