AWS Ops Wheel

3 known vulnerabilities in AWS Ops Wheel, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-18481 CVSS 6.2 medium Stored cross-site scripting in the participant URL handling in AWS Ops Wheel before PR #168 might allow an authenticated remote user to…
  • CVE-2026-6912 CVSS 8.7 high Improperly controlled modification of dynamically-determined object attributes in the Cognito User Pool configuration in AWS Ops Wheel…
  • CVE-2026-6911 CVSS 9.3 critical Missing JWT signature verification in AWS Ops Wheel allows unauthenticated attackers to forge JWT tokens and gain unintended…