AWS m2 high security documentation change
Summary
Updated terminology from 'minor version' to 'release version' and added CVE list for version 5.125.0 including multiple CVEs from 2025-2026
Security assessment
This change directly documents security vulnerabilities (CVEs) that have been fixed in release 5.125.0. The addition of specific CVE identifiers (CVE-2025-7962, CVE-2026-40478, etc.) provides concrete evidence of addressing security vulnerabilities in the software.
Diff
diff --git a/m2/latest/userguide/ba-security-cve.md b/m2/latest/userguide/ba-security-cve.md index b4f70874d..359a6d6ea 100644 --- a//m2/latest/userguide/ba-security-cve.md +++ b//m2/latest/userguide/ba-security-cve.md @@ -15 +15 @@ We recommend that you always upgrade to the latest AWS Transform for mainframe v -The following list details the CVEs fixed in each available minor version, that result from the use of dependencies: +The following list details the CVEs fixed in each available release version, that result from the use of dependencies: @@ -18,0 +19 @@ Version | CVE +[5.125.0](https://docs.aws.amazon.com/m2/latest/userguide/ba-release-notes.html#ba-release-notes-5.125.0) | CVE-2025-7962, CVE-2026-40478, CVE-2026-40477, CVE-2026-29145, CVE-2026-24880, CVE-2026-29146, CVE-2026-29129, CVE-2026-34483, CVE-2026-34487, CVE-2026-32990, CVE-2026-25854, CVE-2026-34500, CVE-2025-67721, CVE-2026-33750, CVE-2025-10492, CVE-2026-22739, CVE-2026-33870, CVE-2026-33871, CVE-2026-22735, CVE-2026-1225, CVE-2026-22737, CVE-2026-24734, CVE-2026-22732, CVE-2026-27904, CVE-2026-32635, CVE-2026-27601, CVE-2026-27903, CVE-2026-29062, CVE-2025-66614, CVE-2026-24733, CVE-2025-69873, CVE-2026-26996