CVE-2026-103957
Last modified
CVE-2026-103957 is a medium-severity vulnerability rated 6.2/10 on the CVSS scale. Server-side request forgery in the OAuth2 discovery handling in Loom for AWS before 1.7.0 might allow an authenticated remote user to obtain the access token of another user of the deployment and to cause the application to issue requests to arbitrary internal network locations, via a crafted discovery document address supplied when registering a tool server or remote agent configured for delegated authentication. To remediate this issue, users should upgrade to version 1.7.0 or later..
Description
Server-side request forgery in the OAuth2 discovery handling in Loom for AWS before 1.7.0 might allow an authenticated remote user to obtain the access token of another user of the deployment and to cause the application to issue requests to arbitrary internal network locations, via a crafted discovery document address supplied when registering a tool server or remote agent configured for delegated authentication. To remediate this issue, users should upgrade to version 1.7.0 or later.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| AWS | loom | < 1.7.0 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-103957?
How severe is CVE-2026-103957?
How do I fix CVE-2026-103957?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-103885Asymmetric Resource Consumption vulnerability in Apache Dire…
- CVE-2026-103918oRPC is a tool that helps build APIs that are end-to-end typ…6.5
- CVE-2026-103921GraphQL Tools provides utilities for building, stitching, an…7.4
- CVE-2026-103922Capacitor is a cross-platform native runtime for web applica…9.3
- CVE-2026-103923KaTeX is a fast, easy-to-use JavaScript library for TeX math…2.1
- CVE-2026-103956Missing authentication for critical function in the authenti…10
- CVE-2026-103958Server-side request forgery in the tool server and remote ag…7.6
- CVE-2026-104002A fail-open error handling issue within the data masking uti…5.3
- CVE-2026-104018An improper privilege management vulnerability (CWE-269) exi…8.8
- CVE-2026-104019OS command injection in the Studio Space startup validation …9
- CVE-2026-104020Uncontrolled recursion in the Ion reader in Amazon Ion Pytho…7.5
- CVE-2026-104026In Sapling SCM prior to v0.2.20260929-102736, control charac…7.8
Are you affected by CVE-2026-103957?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
