A vulnerability was found in AWS tough and tuftool and classified as critical. This impacts the function copy_target/link_target. Executing a manipulation can lead to path traversal.

This vulnerability is handled as CVE-2026-6968. The attack can be executed remotely. There is not any exploit available.

It is suggested to upgrade the affected component.