Powertools for AWS Lambda (Python) Data Masking Vulnerability Requires Immediate Update
Powertools for AWS Lambda (Python) versions 3.6.0 through 3.34.0 contain CVE-2026-104002, a fail-open error in the data masking utility that could expose sensitive fields meant to be masked. This is a serious issue requiring immediate action—update to the patched version as soon as possible. If you're running affected versions, prioritize this security patch to prevent potential data exposure in your serverless applications.
source: [aws/security-bulletin]