Skip to content

Edge components dependency security updates

Agent Proxy 1.34.5755 and Aembit CLI 1.34.5772 fix two published Rust advisories in bundled third-party libraries: RUSTSEC-2026-0190 in anyhow and RUSTSEC-2026-0204 in crossbeam-epoch. The same build upgrades the quinn, AWS SDK, pcap, and postgres-protocol dependencies. Agent Injector 1.34.433 fixes RUSTSEC-2026-0185 in quinn-proto.

These updates shipped in the same build as the Edge components release with Agent Proxy fixes and expanded workload events.

MCP Identity Gateway content inspection coverage

A security update for the MCP Identity Gateway broadens the MCP traffic that Content Security inspects.

The Gateway normalizes responses that MCP servers stream as server-sent events before inspection, so Content Security inspects those responses along with the rest of the session. The Gateway also applies the policy’s Fail Open on Error setting to requests it can’t read and to protocol errors. A policy set to fail closed blocks those requests.

These updates shipped in the same build as the MCP Identity Gateway 1.33.5654 release.

Kerberos and PKI security enhancements for Agent Proxy

Aembit has released a new version of Agent Controller, version 1.23.2160, with the following changes:

  • Security enhancements for Kerberos and Aembit-managed PKI.

  • Added the AEMBIT_HTTP_PORT_DISABLED environment variable to enable you to disable Agent Controller’s HTTP port.


Updated Edge Components:

  • Agent Proxy 1.23.2160

Updated Edge Packages:

  • Helm Chart 1.23

  • Terraform ECS module 1.23

See Edge Components supported versions for more details.