CVE-2026-15415 - Path traversal and arbitrary file write in the workflow linters of aws-healthomics-mcp-server
Healthomics ยท 2026-07-17
Actions
Technical Details
| Affected Versions | <= 0.0.35 |
|---|---|
| Regions | all |
| CVE IDs | CVE-2026-15415 |
| Migration Required | Yes |
| Cost Impact | Neutral |
| IaC Impact | High |
What This Means
For DevOps Teams
Update aws-healthomics-mcp-server to version 0.0.36 to address the path traversal vulnerability (CVE-2026-15415) and ensure that all forked or derivative code is patched accordingly.
For Platform Teams
Deploy the latest version of aws-healthomics-mcp-server (0.0.36) to incorporate security fixes and maintain the integrity of the workflow linting tools.
For Executives
Implement the security patch for aws-healthomics-mcp-server to mitigate the risk of path traversal and arbitrary file write vulnerabilities, ensuring data integrity and compliance with HIPAA standards.