CVE Vulnerabilities

CVE-2026-104002

Detection of Error Condition Without Action

Published: Oct 01, 2026 | Modified: Oct 01, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A fail-open error handling issue within the data masking utility of Powertools for AWS Lambda (Python) might allow actors to read sensitive field values that the application intended to mask. 

To remediate this issue, users should upgrade to version 3.35.0.

Weakness

The product detects a specific error, but takes no actions to handle the error.

Potential Mitigations

References