CVE-2026-89065 and CVE-2026-89066: Issue with projen - Path traversal and OS command injection

Amazon Web Services Version 1 original current

Imported from official source

Bulletin ID: 2026-108-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/11/2026 09:00 AM PDT Description: projen is an open-source tool for defining and synthesizing software project configurations as code. AWS identified two issues in projen affecting the generated file manifest cleanup component and the task synthesis component. …

This version

Version
1 of 1
Recorded
September 18, 2026 09:42
Change
Initial
Content hash
25f9e91336c845be6202239f8e9bde21
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.