AWS Blu Age security vulnerabilities - AWS Mainframe Modernization

AWS Mainframe Modernization Service (Managed Runtime Environment experience) will no longer be open to new customers starting on November 7, 2025. If you would like to use the service, please sign up prior to November 7, 2025. For capabilities similar to AWS Mainframe Modernization Service (Managed Runtime Environment experience) explore AWS Mainframe Modernization Service (Self-Managed Experience). Existing customers can continue to use the service as normal. For more information, see AWS Mainframe Modernization availability change.

AWS Blu Age security vulnerabilities

Common Vulnerabilities and Exposures (CVE) is a reference list for publicly known cybersecurity vulnerabilities. Each entry contains an identification number, a description, and at least one public reference.

We recommend that you always upgrade to the latest AWS Blu Age version release to be protected against known vulnerabilities. Security scans are continuously performed with Amazon Inspector and findings are classified as per their severity in NIST.

The following list details the CVEs fixed in each available minor version, that result from the use of dependencies:

Version CVE
4.8.0 CVE-2025-22228
4.7.0 CVE-2025-25193, CVE-2025-24970, CVE-2024-47535, CVE-2024-38820, CVE-2024-38809, CVE-2024-22262, CVE-2022-45868
4.6.0 CVE-2024-12801, CVE-2024-12798, CVE-2024-50379, CVE-2024-56337
4.5.0 CVE-2024-47535, CVE-2024-52316, CVE-2024-47535, CVE-2024-38827
4.4.0 CVE-2024-38820, CVE-2024-38821, CVE-2024-38809, CVE-2024-38816, CVE-2024-47554, CVE-2024-6484, CVE-2024-6485
4.3.0 CVE-2024-43788, CVE-2022-25898, CVE-2021-30246, CVE-2024-21484, CVE-2024-34750
4.2.0 CVE-2020-11023, CVE-2023-26364 , CVE-2019-11358, CVE-2020-11022, CVE-2021-23358 , CVE-2017-18214, CVE-2022-24785, CVE-2022-31129, CVE-2023-48631
4.1.0 CVE-2024-29025, CVE-2024-23080, CVE-2024-22262, CVE-2024-30171, CVE-2024-29857, CVE-2024-30172
4.0.0 CVE-2016-1000027, CVE-2022-1471, CVE-2024-1597, CVE-2024-22243, CVE-2024-22233, CVE-2024-22234, CVE-2024-22259, CVE-2024-22257, CVE-2024-29131, CVE-2024-29133
Note

For details on CVEs fixed in previous release versions, please contact your AWS Blu Age delivery manager