Code Execution Vulnerability in Amazon Redshift Python Driver by AWS

⚠️ CVE-Referenzen: CVE-2026-8838
Aws - Amazon Redshift Connector For Python - CRITICAL - CVE-2026-8838. A security vulnerability in the Amazon Redshift Python Driver allows a malicious server or man-in-the-middle attacker to exploit unsafe usage of Python's eval() function on data received from a server. This can result in arbitrary code execution on the client side, which poses a significant security risk. Users are urged to upgrade to version 2.1.14 to mitigate this risk and safeguard their systems.
Quelle: securityvulnerability.io