๐Ÿ” CVE Alert

CVE-2026-95985

HIGH 8.8

Kiro IDE Allows Agentic Writes to Global Configurations While Working in Untrusted Workspaces

CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to inject crafted instructions into the agent's context. When a user runs the agent in a crafted repository as an untrusted workspace, sending any message can cause agent modifications to auto-loaded global configuration paths. We recommend you upgrade to Kiro IDE version 1.0.242 or later. Users who ran the agent in an untrusted workspace on an earlier version should also review the global Kiro configuration directory (~/.kiro) for entries they did not create.

CWE CWE-829 CWE-349
Vendor amazon
Product kiro ide
Published Sep 24, 2026
Last Updated Sep 24, 2026
Stay Ahead of the Next One

Get instant alerts for amazon kiro ide

Be the first to know when new high vulnerabilities affecting amazon kiro ide are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

Amazon / Kiro IDE
0 < 1.0.242

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
aws.amazon.com: https://aws.amazon.com/security/security-bulletins/2026-117-aws/ kiro.dev: https://kiro.dev/changelog/ide/1-0-242/