CRITICAL 9.4 NVD
CVE-2026-77810
In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for t
In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. To remediate this issue, users should upgrade to aws-athena-query-federation v2026.30.1 or later.
References
- https://aws.amazon.com/security/security-bulletins/2026-087-aws/
- https://github.com/awslabs/aws-athena-query-federation/releases/tag/v2026.30.1
- https://github.com/awslabs/aws-athena-query-federation/security/advisories/GHSA-v7c2-5wfg-
This critical severity vulnerability with a CVSS score of 9.4 was published on 2026-08-21 via NVD.
Risk Timeline
CVE Disclosed2026-08-21 · -1 days ago
Remediation Resources
vulnfeed aggregates 11627 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.