Skip to main content
Loading…
    CVE-2026-11417 — OS command injection in the NodejsFunction local bundling pipeline in aws-cdk-lib before 2.245.0 (2.246.0 on Windows) might allow an actor who controls the value of one or more bundling properties (ex — CVE Database · The Intelligence Room