Vulnerability Description
Improper request input validation in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center allows a user to modify a valid request and spoof an approval in TEAM. Upgrade TEAM to the latest release v.1.2.2. Follow instructions in updating TEAM documentation for updating process
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://aws.amazon.com/security/security-bulletins/AWS-2025-004/
- https://github.com/aws-samples/iam-identity-center-team/releases/tag/v1.2.2
- https://github.com/aws-samples/iam-identity-center-team/security/advisories/GHSA
FAQ
What is CVE-2025-1969?
CVE-2025-1969 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Improper request input validation in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center allows a user to modify a valid request and spoof an approval in TEAM. Upgrade TEAM to the...
How severe is CVE-2025-1969?
CVE-2025-1969 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-1969?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.