CVE-2026-15746 - Credential disclosure in Strands Agents Tools elasticsearch_memory tool

Imported from official source

Security notice

Cybersecurity Classified by Officially

Amazon Web Services's source carried a headline and a link, and no summary. Officially records what a source published — for this item, that was all of it.

Read the original at the source: https://aws.amazon.com/security/security-bulletins/rss/2026-056-aws/

Officially imported this from Amazon Web Services’s own source. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

This publication has changed since it was first published

2 versions recorded. The original is kept in full — nothing is overwritten.

  1. v2 imported change on current
  2. v1 as first published on

Provenance

Organization
Amazon Web Services — imported from official source
Official source
https://aws.amazon.com/security/security-bulletins/feed/ RSS
Imported
September 22, 2026 20:12
Versions
2 recorded
Identity
20c922728b39b0e3c54ad0e5ec1cdaa2046eddc8

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.