CVE-2026-12957: Amazon Q Silently Stole Your AWS Keys
Amazon Q Developer auto-executed MCP configs from cloned repos, handing attackers your AWS credentials. CVE-2026-12957 is patched — here is what to do ...
IDEs, editors, productivity tools, and development utilities