terraform-provider-aws

Direct Vulnerabilities

Known vulnerabilities in the terraform-provider-aws package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
CVE-2026-39821

<3.11.0-150200.6.21.1
  • H
CVE-2026-46598

<3.11.0-150200.6.18.1
  • H
Improper Certificate Validation

<3.11.0-150200.6.18.1
  • H
Incorrect Type Conversion or Cast

<3.11.0-150200.6.18.1
  • H
CVE-2026-46595

<3.11.0-150200.6.18.1
  • H
Uncontrolled Recursion

<3.11.0-150200.6.18.1
  • H
Cross-site Scripting (XSS)

<3.11.0-150200.6.18.1
  • M
Out-of-bounds Read

<3.11.0-150200.6.18.1
  • H
Uncontrolled Recursion

<3.11.0-150200.6.18.1
  • M
Uncontrolled Recursion

<3.11.0-150200.6.18.1
  • H
Improper Restriction of Rendered UI Layers or Frames

<3.11.0-150200.6.18.1
  • H
Out-of-Bounds

<3.11.0-150200.6.18.1
  • H
Out-of-bounds Read

<3.11.0-150200.6.18.1
  • H
CVE-2026-39821

<3.11.0-150200.6.18.1
  • M
Insufficiently Protected Credentials

<3.11.0-150200.6.18.1
  • H
Improper Certificate Validation

<3.11.0-150200.6.18.1
  • H
Improper Restriction of Rendered UI Layers or Frames

<3.11.0-150200.6.18.1
  • M
Improper Validation of Integrity Check Value

<3.11.0-150200.6.18.1
  • H
Missing Authorization

<3.11.0-150200.6.18.1
  • H
Improper Verification of Cryptographic Signature

<3.11.0-150200.6.18.1
  • H
Missing Authorization

<3.11.0-150200.6.18.1
  • H
Deserialization of Untrusted Data

<3.11.0-150200.6.18.1
  • H
Integer Overflow or Wraparound

<3.11.0-150200.6.18.1
  • H
Integer Overflow or Wraparound

<3.11.0-150200.6.18.1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.11.0-150200.6.18.1
  • H
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

<3.11.0-150200.6.18.1
  • H
Improper Certificate Validation

<3.11.0-150200.6.18.1
  • H
Integer Overflow or Wraparound

<3.11.0-150200.6.18.1
  • H
Improper Restriction of Rendered UI Layers or Frames

<3.11.0-150200.6.18.1
  • H
Resource Exhaustion

<3.11.0-150200.6.18.1
  • H
Improper Validation of Certificate with Host Mismatch

<3.11.0-150200.6.18.1
  • H
Reachable Assertion

<3.11.0-150200.6.18.1
  • H
Improper Authorization

<3.11.0-150200.6.18.1
  • M
CVE-2025-58181

<3.11.0-150200.6.18.1
  • M
CVE-2025-47911

<3.11.0-150200.6.18.1
  • M
Allocation of Resources Without Limits or Throttling

<3.11.0-150200.6.18.1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.11.0-150200.6.18.1
  • M
Stack-based Buffer Overflow

<3.11.0-150200.6.18.1
  • M
CVE-2025-22872

<3.11.0-150200.6.18.1
  • H
CVE-2025-22869

<3.11.0-150200.6.18.1
  • M
CVE-2025-47914

<3.11.0-150200.6.18.1
  • H
CVE-2022-41723

<3.11.0-150200.6.18.1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.11.0-150200.6.15.2
  • H
CVE-2025-22869

<3.11.0-150200.6.12.1