AWS SDK for Go v2 Denial of Service Vulnerability – Update Required
AWS SDK for Go v2 versions before 2026-03-23 have a critical flaw in the EventStream header decoder. An attacker can crash your application by sending a malformed response with an invalid header type byte. If you're running an older version, update immediately to patch this DoS vulnerability.
source: [aws/security-bulletin]