Amazon disclosed CVE-2026-12530, a high-severity command injection vulnerability in the AWS Bedrock AgentCore Python SDK. The flaw is caused by improper neutralization of argument delimiters in the install_packages() method, allowing a remote authenticated user to supply crafted package-name arguments and execute arbitrary commands inside the Code Interpreter sandbox.
The issue affects AWS Bedrock AgentCore Python SDK versions 1.1.3 through 1.6.0 and is rated as remotely exploitable. AWS has published a security bulletin for the vulnerability, and the recommended mitigation is to upgrade affected deployments to version 1.6.1.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
The published vulnerability guidance identifies upgrading the AWS Bedrock AgentCore Python SDK to version 1.6.1 as the recommended mitigation for CVE-2026-12530. This indicates a fixed version was made available for affected users.
Amazon published CVE-2026-12530, a high-severity command injection vulnerability in the AWS Bedrock AgentCore Python SDK's install_packages() method. The issue affects versions 1.1.3 through 1.6.0 and could allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
cvefeed.io
Open sourceaws.amazon.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.