← Terug naar overzicht

A cleartext storage vulnerability exists in the @step and @remote decorator pipeline components of the Amazon SageMaker Python SDK prior to versions v3.11.0 and v2.256.0. An authenticated remote user can extract an HMAC signing key from SageMaker DescribePipeline API responses due to the key being stored in plaintext. The exposed key allows an attacker to forge valid integrity signatures for specially crafted function payloads. This forgery enables code execution within another user's pipeline execution context inside the same AWS account. The vulnerability represents a significant lateral movement and privilege escalation risk within shared AWS environments. Fixes have been released in SageMaker Python SDK v2.256.0 and v3.11.0. AWS has published a security bulletin and GitHub advisory addressing the issue.

Affected products

  • Amazon SageMaker Python SDK

Related CVE's

  • CVE-2026-83551

Categories

  • Cloud & Virtualization
  • Identity & Access
  • Zero-Day Vulnerabilities