aws tough Vulnerabilities
CVE security advisories and vulnerability history for tough by aws.
Last updated
Overview
aws tough has 7 published CVE records since 2025, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 0 have a known public exploit. The average CVSS base score across scored CVEs is 6.3.
This page aggregates every publicly disclosed vulnerability (CVE) affecting aws tough, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of aws tough's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of aws tough's CVEs are currently listed in CISA's KEV catalog.
Public exploits
0
No aws tough CVEs currently have a tracked public exploit.
Affected versions and CVEs
Browse every aws tough version named in a CVE, then pick one to see only the CVEs that affect it.
Version ranges
- 0.1.0 <= v < 0.20.04 CVEs
- >= 0.22.03 CVEs
Fixed in
- 0.20.04 CVEs
- 0.22.03 CVEs
7 CVEs
- High · CVSS 7.1EPSS 0.5% (41th pct)2026-04-24
- High · CVSS 7.1EPSS 0.2% (16th pct)2026-04-24
- High · CVSS 7.0EPSS 0.3% (18th pct)2026-04-24
- Medium · CVSS 5.7EPSS 0.3% (23th pct)2025-03-27
- Medium · CVSS 5.7EPSS 0.3% (23th pct)2025-03-27
- Medium · CVSS 5.7EPSS 0.3% (23th pct)2025-03-27
- Medium · CVSS 5.7EPSS 0.3% (23th pct)2025-03-27
Common weakness types
The CWE weakness categories most often found in aws tough CVEs. Follow any weakness for its full explanation.
- CWE-1025Comparison Using Wrong Factors2 CVEs
- CWE-1288Improper Validation of Consistency within Input1 CVE
- CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1 CVE
- CWE-345Insufficient Verification of Data Authenticity1 CVE
- CWE-347Improper Verification of Cryptographic Signature1 CVE
- CWE-670Always-Incorrect Control Flow Implementation1 CVE
Disclosure activity by year
How many aws tough CVEs were published each year.
Other aws products
Browse vulnerabilities for other products by aws.
Frequently asked questions
Common questions about aws tough vulnerabilities.
- How many CVEs does aws tough have?
- aws tough has 7 published CVE records since 2025.
- How many aws tough CVEs are in CISA KEV?
- None of aws tough's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Are there public exploits for aws tough vulnerabilities?
- No aws tough CVEs currently have a tracked public exploit in this dataset.
- Which versions of aws tough are affected?
- 4 distinct aws tough versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
- What are the most common weakness types in aws tough CVEs?
- aws tough's CVEs most often map to these CWE weakness types: CWE-1025 (Comparison Using Wrong Factors), CWE-1288 (Improper Validation of Consistency within Input), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-345 (Insufficient Verification of Data Authenticity).
- What is the average severity of aws tough CVEs?
- The average CVSS base score across aws tough's scored CVEs is 6.3.
References
- All aws vulnerabilities
- The MITRE CVE Program (opens in a new tab)
- Learn: What is a CVE?
- CWE directory: the weakness types these CVEs map to
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Track aws tough vulnerabilities
Monitor new aws tough vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.