AWS Security ChangesHomeSearch

AWS m2 high security documentation change

Service: m2 · 2026-04-25 · Security-related high

File: m2/latest/userguide/ba-security-cve.md

Summary

Updated terminology from 'minor version' to 'release version' and added CVE list for version 5.125.0 including multiple CVEs from 2025-2026

Security assessment

This change directly documents security vulnerabilities (CVEs) that have been fixed in release 5.125.0. The addition of specific CVE identifiers (CVE-2025-7962, CVE-2026-40478, etc.) provides concrete evidence of addressing security vulnerabilities in the software.

Diff

diff --git a/m2/latest/userguide/ba-security-cve.md b/m2/latest/userguide/ba-security-cve.md
index b4f70874d..359a6d6ea 100644
--- a//m2/latest/userguide/ba-security-cve.md
+++ b//m2/latest/userguide/ba-security-cve.md
@@ -15 +15 @@ We recommend that you always upgrade to the latest AWS Transform for mainframe v
-The following list details the CVEs fixed in each available minor version, that result from the use of dependencies:
+The following list details the CVEs fixed in each available release version, that result from the use of dependencies:
@@ -18,0 +19 @@ Version | CVE
+[5.125.0](https://docs.aws.amazon.com/m2/latest/userguide/ba-release-notes.html#ba-release-notes-5.125.0) | CVE-2025-7962, CVE-2026-40478, CVE-2026-40477, CVE-2026-29145, CVE-2026-24880, CVE-2026-29146, CVE-2026-29129, CVE-2026-34483, CVE-2026-34487, CVE-2026-32990, CVE-2026-25854, CVE-2026-34500, CVE-2025-67721, CVE-2026-33750, CVE-2025-10492, CVE-2026-22739, CVE-2026-33870, CVE-2026-33871, CVE-2026-22735, CVE-2026-1225, CVE-2026-22737, CVE-2026-24734, CVE-2026-22732, CVE-2026-27904, CVE-2026-32635, CVE-2026-27601, CVE-2026-27903, CVE-2026-29062, CVE-2025-66614, CVE-2026-24733, CVE-2025-69873, CVE-2026-26996