AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-19642

MEDIUM · CVSS 5.9 EPSS 0.29% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

An out-of-bounds write vulnerability in the Base64 decoder of Amazon's aws-sdk-cpp prior to version 1.11.862 can lead to application crashes or heap memory corruption when processing maliciously crafted Base64-encoded input. This issue primarily affects applications utilizing this SDK, particularly those exposed to untrusted input. Organizations using aws-sdk-cpp should prioritize upgrading to the latest version to mitigate potential risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-19642
Severity
MEDIUM
CVSS
5.9
EPSS
0.29%

Original NVD Description

An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or heap memory corruption in an application that processes crafted Base64-encoded input. To remediate this issue, users should upgrade to version 1.11.862.