AWS loom

3 known vulnerabilities in AWS loom, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-103958 CVSS 8.3 high Server-side request forgery in the tool server and remote agent connection handling in Loom for AWS before 1.7.0 might allow an…
  • CVE-2026-103957 CVSS 8.2 high Server-side request forgery in the OAuth2 discovery handling in Loom for AWS before 1.7.0 might allow an authenticated remote user to…
  • CVE-2026-103956 CVSS 10.0 critical Missing authentication for critical function in the authentication dependency in Loom for AWS before 1.6.1 allowed remote actors to obtain…