CVE-2026-77810
In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. To remediate this issue, users should upgrade to aws-athena-query-federation v2026.30.1 or later.
- Published Aug 21, 2026
- CVSS 9.4 critical
- 0.6% chance of exploitation in the next 30 days (EPSS)
- A fix is available
Affected software
In the news
- CVE-2026-77810 - Issue with Athena Federated Query Neptune Connector AWS Security Bulletins ·