bartek@aws: ~/news
$ whoami
$ AWS Architect · DevOps · Cloud
Thursday, August 20, 2026

Amazon Redshift JDBC Driver: Critical RCE Vulnerability Requires Immediate Update

Amazon Redshift JDBC Driver versions before 2.2.2 have a nasty remote code execution flaw (CVE-2026-8178). The driver can load and execute arbitrary classes from JDBC connection URLs, letting attackers run code in your app context if they control the connection string. You need to upgrade to version 2.2.2 or later right now.

source: [aws/security-bulletin]