CVE-2025-2598 | AWS Cloud Development Kit Command Line Interface up to 2.178.1 Credential Plugin exposure of sensitive system information to an unauthorized control sphere (AWS-2025-005)
A vulnerability was found in AWS Cloud Development Kit Command Line Interface up to 2.178.1. It has been rated as problematic. This issue affects some unknown processing of the component Credential Plugin. The manipulation leads to exposure of sensitive system information to an unauthorized control sphere.
The identification of this vulnerability is CVE-2025-2598. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.