A vulnerability was found in AWS aws-smithy-http-server up to 0.66.4. It has been rated as problematic. This vulnerability affects the function serve. The manipulation leads to resource consumption.

This vulnerability is documented as CVE-2026-16756. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.