


Perceptive Security
SOC/SIEM Consultancy

Incorrect authorization in the http_request tool in Strands Agents Tools before 0.8.2 might allow remote attackers to obtain credentials configured via HTTP_REQ…
Published:
30 juli 2026 om 22:00:00
Alert date:
31 juli 2026 om 21:02:18
Source:
nvd.nist.gov
Emerging Technologies, Identity & Access, Supply Chain & Dependencies
CVE-2026-18394 is a vulnerability in the http_request tool of Strands Agents Tools prior to version 0.8.2. The flaw involves incorrect authorization logic that can be exploited by remote attackers to obtain credentials stored in HTTP_REQUEST_TOKEN_CONFIG. The attack vector involves influencing the underlying LLM to route HTTP requests through attacker-controlled proxy infrastructure, effectively leaking sensitive authentication tokens. This represents a prompt injection or indirect manipulation attack targeting AI agent tooling. The vulnerability has been assigned a high severity rating. AWS has published a security bulletin regarding this issue. The fix is available in version 0.8.2 of the Strands Agents Tools package. Users are strongly advised to upgrade immediately to mitigate credential theft risks.
Technical details
Mitigation steps:
Affected products:
Strands Agents Tools < 0.8.2
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-18394
https://aws.amazon.com/security/security-bulletins/2026-069-aws/
https://github.com/strands-agents/tools/releases/tag/v0.8.2
https://github.com/strands-agents/tools/security/advisories/GHSA-qhw6-2h72-m84v
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
