A vulnerability labeled as critical has been found in AWS Strands Agents Tools up to 0.8.2. Affected by this vulnerability is an unknown functionality of the component mongodb_memory/elasticsearch_memory/mem0_memory. The manipulation of the argument namespace results in improper control of resource identifiers.
This vulnerability is known as CVE-2026-19111. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.