Two critical vulnerabilities discovered in Amazon Bedrock AgentCore’s Python SDK could allow attackers to execute arbitrary commands within AI sandboxes and potentially access sensitive AWS credentials associated with affected workloads, according to Infosecurity Magazine.
The flaws, tracked as CVE-2026-12530 and CVE-2026-16796, were found in t…


