AWS Security ChangesHomeSearch

AWS inspector low security documentation change

Service: inspector · 2026-04-16 · Security-related low

File: inspector/latest/user/doc-history.md

Summary

Added a markdown link and a table entry documenting false positive CVE findings for the Amazon Inspector SSM plugin.

Security assessment

The change adds documentation about specific CVEs (CVE-2026-32283, CVE-2026-33810, CVE-2026-32289, CVE-2026-32281, CVE-2026-32288, CVE-2026-32282) being false positives in the Amazon Inspector SSM plugin. This directly addresses a security incident (false positive findings) and provides transparency about vulnerability reporting. The security implication is that users might have been alerted to non-existent vulnerabilities, and this change clarifies the situation.

Diff

diff --git a/inspector/latest/user/doc-history.md b/inspector/latest/user/doc-history.md
index 44647e079..1af76e5d4 100644
--- a//inspector/latest/user/doc-history.md
+++ b//inspector/latest/user/doc-history.md
@@ -0,0 +1,2 @@
+[View a markdown version of this page](doc-history.md)
+
@@ -14,0 +17 @@ Change| Description| Date
+[Updates for the Amazon Inspector SSM plugin](./doc-history.html)|  Amazon Inspector is aware of a scenario where the Amazon Inspector SSM plugin might generate vulnerability findings for CVE-2026-32283, CVE-2026-33810, CVE-2026-32289, CVE-2026-32281, CVE-2026-32288, and CVE-2026-32282. It was confirmed that the Amazon Inspector SSM plugin is not impacted by these vulnerabilities. These findings will be resolved in the next release of the Amazon Inspector SSM plugin. | April 13, 2026