Insufficient authentication security controls in the browser-based authentication components in Amazon Athena ODBC driver before 2.1.0.0 might allow a threat actor to intercept or hijack authentication sessions due to insufficient protections in the browser-based authentication flows.
To remediate this issue, users should upgrade to version 2.1.0.0.
To remediate this issue, users should upgrade to version 2.1.0.0.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 03 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient authentication security controls in the browser-based authentication components in Amazon Athena ODBC driver before 2.1.0.0 might allow a threat actor to intercept or hijack authentication sessions due to insufficient protections in the browser-based authentication flows. To remediate this issue, users should upgrade to version 2.1.0.0. | |
| Title | Insufficient authentication security controls in browser-based authentication components in Amazon Athena ODBC driver | |
| Weaknesses | CWE-862 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: AMZN
Published:
Updated: 2026-04-03T20:10:40.591Z
Reserved: 2026-04-03T13:43:36.914Z
Link: CVE-2026-35561
No data.
Status : Received
Published: 2026-04-03T21:17:12.250
Modified: 2026-04-03T21:17:12.250
Link: CVE-2026-35561
No data.
OpenCVE Enrichment
No data.
Weaknesses