CVE-2026-9291 - Insecure Deserialization in Amazon Braket SDK Job Results Processing
Braket Sdk Β· 2026-06-05
Actions
Technical Details
| Affected Versions | >= 1.10.0 AND < 1.117.0 |
|---|---|
| Regions | all |
| CVE IDs | CVE-2026-9291 |
| Migration Required | Yes |
| Cost Impact | Neutral |
What This Means
For DevOps Teams
Update Amazon Braket SDK to version 1.117.0 and restrict S3 bucket policies to trusted principals to address CVE-2026-9291 and prevent potential security breaches from malicious job results.
For Platform Teams
Adopt the patched Amazon Braket SDK version 1.117.0 and enforce strict S3 bucket policies to secure quantum computing job results processing and maintain data integrity.
For Executives
Implement the latest Amazon Braket SDK version 1.117.0 to mitigate the risk of arbitrary code execution due to insecure deserialization and ensure the security of quantum computing job results processing.