AWS Security ChangesHomeSearch

AWS inspector medium security documentation change

Service: inspector · 2026-03-31 · Security-related medium

File: inspector/latest/user/doc-history.md

Summary

Updated documentation history to include two additional CVEs (CVE-2026-33997 and CVE-2026-34040) that Amazon Inspector SBOM Generator might generate findings for, while confirming the tool is not impacted by these vulnerabilities.

Security assessment

This change documents specific CVEs (CVE-2026-33997 and CVE-2026-34040) that the SBOM Generator might generate findings for, indicating awareness of these security vulnerabilities. The documentation confirms the tool is not impacted but acknowledges it might generate findings for them, suggesting these are either false positives or the tool is detecting vulnerable dependencies.

Diff

diff --git a/inspector/latest/user/doc-history.md b/inspector/latest/user/doc-history.md
index e2f4ebd37..17e5f93d0 100644
--- a//inspector/latest/user/doc-history.md
+++ b//inspector/latest/user/doc-history.md
@@ -15 +15 @@ Change| Description| Date
-[Updates for the Amazon Inspector SBOM Generator](./doc-history.html)|  Amazon Inspector is aware of a scenario where the Amazon Inspector SBOM Generator might generate vulnerability findings for CVE-2026-33747 and CVE-2026-33748. It was confirmed the Amazon Inspector SBOM Generator is not impacted by these vulnerabilities. These findings will be resolved in Amazon Inspector SBOM Generator version 1.12.0. | March 26, 2026  
+[Updates for the Amazon Inspector SBOM Generator](./doc-history.html)|  Amazon Inspector is aware of a scenario where the Amazon Inspector SBOM Generator might generate vulnerability findings for CVE-2026-33997, CVE-2026-34040, CVE-2026-33747 and CVE-2026-33748. It was confirmed the Amazon Inspector SBOM Generator is not impacted by these vulnerabilities. These findings will be resolved in Amazon Inspector SBOM Generator version 1.12.0. | March 26, 2026