2026-068-AWS

CVE-2026-18481 - Stored XSS in Participant URL Field leads to Account Takeover via Session Token Theft

Published
July 31, 2026
Last Modified

🔗 CVE IDs covered (1)

📋 Description

Bulletin ID: 2026-068-AWS Publication Date: 07/31/2026 11:00 AM PDT Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.

🔗 References (1)