threat-intel
Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs
Critical
Summary
A critical vulnerability was discovered in Amazon Q Developer, allowing attackers to execute arbitrary code and steal developer credentials by leveraging Model Context Protocol (MCP) configurations within a cloned repository. The flaw stemmed from trusting workspace configurations, enabling a malicious file to initiate commands with the developer’s cloud session access. Amazon has released a patch to mitigate the risk, but users are advised to update to the latest versions of the Language Servers for AWS.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
