Skip to main content
Meet us at Black Hat USA 2026— Las Vegas, August 1–6Book a Meeting
Mallory
Back to intelligence
identity-authentication-vulnerabilitycloud-service-vulnerabilityprivilege-escalation-methodinternet-facing-service-vulnerability

AWS Ops Wheel v2 flaws enabled admin takeover via JWT forgery and Cognito abuse

Updated 2d agoFirst seen Jun 12, 20266 sources

AWS disclosed two critical vulnerabilities in AWS Ops Wheel v2 that could let attackers seize full administrative control of customer deployments. CVE-2026-6911 stems from missing cryptographic verification of JWT signatures in the v2 API, allowing an unauthenticated attacker with network access to the API Gateway endpoint to forge tokens with arbitrary tenant and administrator claims. The flaw could expose all application data across tenants and permit management of Amazon Cognito user accounts; it affects deployments built from PR #147 through PR #163, while v1 is not affected. GitHub advisory GHSA-v5vr-8w3c-37x2 says the issue was fixed in PR #164, and temporary mitigations include restricting API Gateway access with AWS WAF or VPC controls.

A second issue, CVE-2026-6912, allowed any authenticated user to escalate privileges by modifying self-writable security-sensitive Cognito attributes such as custom:deployment_admin through the Cognito UpdateUserAttributes API. An attacker could promote their own account to deployment administrator, then read, modify, or delete cross-tenant data and manage all users in the deployment’s Cognito User Pool. That flaw affects the same PR #147-#163 range and was fixed in PR #165 by tightening Cognito WriteAttributes and adding server-side email verification tied to DEPLOYMENT_ADMIN_EMAILS. Because Ops Wheel is deployed into customer AWS accounts through CloudFormation, each affected deployment and any forks or derivative code must be individually updated.

Share:
AWS Ops Wheel v2 flaws enabled admin takeover via JWT forgery and Cognito abuse
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

6 events from the most recent confirmed update back to the earliest known activity.

6 EVENTS
Apr 24, 20262mo ago

AWS Ops Wheel fixes CVE-2026-6912 in PR 165

AWS addressed CVE-2026-6912 in PR 165 by restricting Cognito WriteAttributes for sensitive fields and adding server-side email verification tied to DEPLOYMENT_ADMIN_EMAILS. Because Ops Wheel is deployed into customer AWS accounts via CloudFormation, each customer deployment must be individually updated.

Quick Look: CVE-2026-6912 Privilege Escalation via Self-Writable Cognito Attribute in AWS Ops Wheel - ZeroPath Blog | ZeroPath

AWS Ops Wheel discloses CVE-2026-6912 Cognito privilege escalation

AWS Ops Wheel disclosed CVE-2026-6912, a privilege-escalation flaw in v2 caused by a Cognito User Pool Client configuration that let authenticated users modify sensitive custom attributes on their own profiles. By setting attributes such as custom:deployment_admin, an attacker could obtain full deployment administrator privileges.

Quick Look: CVE-2026-6912 Privilege Escalation via Self-Writable Cognito Attribute in AWS Ops Wheel - ZeroPath Blog | ZeroPath

AWS Ops Wheel fixes CVE-2026-6911 in PR #164

AWS Ops Wheel addressed CVE-2026-6911 in PR #164 and advised users to redeploy the latest version and patch forks or derivative code. The issue affected v2 deployments built from PR #147 through PR #163, while v1 was not affected.

Brief Summary: CVE-2026-6911 - Critical JWT Signature Bypass in AWS Ops Wheel Enables Full Administrative Takeover - ZeroPath Blog | ZeroPath

AWS Ops Wheel discloses CVE-2026-6911 JWT signature bypass

A security advisory disclosed CVE-2026-6911 in AWS Ops Wheel v2, where JWT tokens were accepted without cryptographic signature verification. An unauthenticated attacker with network access to the API Gateway endpoint could forge tokens to gain administrative access and access or modify cross-tenant data.

Brief Summary: CVE-2026-6911 - Critical JWT Signature Bypass in AWS Ops Wheel Enables Full Administrative Takeover - ZeroPath Blog | ZeroPath
Nov 17, 20258mo ago

OpenStack publishes fixes and advisories for CVE-2025-65073

OpenStack published fixes and advisories for CVE-2025-65073 through OSSA-2025-002, with related downstream notices from Ubuntu and Debian. The flaw affects Keystone EC2 and S3 token endpoints and can let attackers replay AWS Signature Version 4 data from valid presigned URLs to impersonate users.

OpenStack Keystone CVE-2025-65073: Brief Summary of EC2/S3 Token Endpoint Authorization Bypass - ZeroPath Blog | ZeroPath
Jul 30, 202511mo ago

Ceph fixes CVE-2024-48916 JWT authentication bypass

Ceph addressed CVE-2024-48916 in RadosGW's OpenID Connect handling by updating rgw/sts logic to reject unsupported JWT algorithms and deny authentication when an invalid algorithm is detected. The flaw could let attackers use crafted JWTs with alg=none to bypass signature verification and gain unauthorized access.

Ceph RadosGW JWT Authentication Bypass (CVE-2024-48916): Brief Summary and Patch Overview - ZeroPath Blog | ZeroPath
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

20 LINKEDOpen in app
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.