VendorsAmazondata.allall versions
Vulnerabilities

Amazon Data.all

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-52314
data.all admin user may access potentially sensitive data stored by producers via logs
Published 2024-11-09 · Modified
6.9EPSS 0.004
CVE-2024-52311
data.all does not invalidate authentication token upon user logout
Published 2024-11-09 · Modified
6.3EPSS 0.005
CVE-2024-52312
data.all authenticated users can perform restricted operations against DataSets and Environments
Published 2024-11-09 · Modified
5.4EPSS 0.003
CVE-2024-52313
data.all authenticated users can obtain incorrect object level authorizations
Published 2024-11-09 · Modified
5.3EPSS 0.003
CVE-2024-10953
data.all authenticated users can perform mutating update operations on persisted notification records
Published 2024-11-09 · Modified
5.3EPSS 0.003