-
Notifications
You must be signed in to change notification settings - Fork 4.4k
Open
Labels
aws-cdk-libRelated to the aws-cdk-lib packageRelated to the aws-cdk-lib packagebugThis issue is a bug.This issue is a bug.p2response-requestedWaiting on additional info and feedback. Will move to "closing-soon" in 7 days.Waiting on additional info and feedback. Will move to "closing-soon" in 7 days.
Description
Describe the bug
┌────────────────┬──────────┬──────────────────────────┬────────────┬───────────┬───────────┬──────────┬────────┬────────────┐
│ CVE │ SEVERITY │ DIRECT │ DIRECT │ AFFECTED │ AFFECTED │ FIXED │ TYPE │ │
│ │ │ DEPENDENCY │ DEPENDENCY │ COMPONENT │ COMPONENT │ VERSIONS │ │ │
│ │ │ │ VERSION │ NAME │ VERSION │ │ │ │
├────────────────┼──────────┼──────────────────────────┼────────────┼───────────┼───────────┼──────────┼────────┼────────────┤
│ CVE-2026-23490 │ High │ @aws-cdk/asset-awscli-v1 │ 2.2.261 │ pyasn1 │ 0.6.1 │ [0.6.2] │ Python │ │
└────────────────┴──────────┴──────────────────────────┴────────────┴───────────┴───────────┴──────────┴────────┴────────────┘
Ref:
cdklabs/awscdk-asset-awscli#1361
Regression Issue
- Select this option if this issue appears to be a regression.
Last Known Working CDK Library Version
No response
Expected Behavior
No CVE
Current Behavior
Reproduction Steps
Install CDK LIB and scan
Possible Solution
No response
Additional Information/Context
No response
AWS CDK Library version (aws-cdk-lib)
2.235.0
AWS CDK CLI version
2.1100.1
Node.js Version
v22.21.1
OS
Linux
Language
TypeScript
Language Version
No response
Other information
No response
Metadata
Metadata
Assignees
Labels
aws-cdk-libRelated to the aws-cdk-lib packageRelated to the aws-cdk-lib packagebugThis issue is a bug.This issue is a bug.p2response-requestedWaiting on additional info and feedback. Will move to "closing-soon" in 7 days.Waiting on additional info and feedback. Will move to "closing-soon" in 7 days.