Skip to content

Conversation

@aikido-autofix
Copy link
Contributor

@aikido-autofix aikido-autofix bot commented Jan 9, 2026

Upgrade @smithy/config-resolver to enhance region input validation, preventing potential misconfiguration and improper AWS API routing

✅ 1 CVE resolved by this upgrade

This PR will resolve the following CVEs:

Issue Severity           Description
GHSA-6475-r3vj-m8vf
LOW
An attacker could manipulate the region input field in AWS SDK for JavaScript, potentially routing API calls to unintended or non-AWS hosts, risking improper service configuration and potential security misrouting.

@aikido-autofix aikido-autofix bot requested a review from a team as a code owner January 9, 2026 23:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant