CVE-2026-95985

HIGH Status: Awaiting Analysis

CVSS Scores

CVSS v3.x Base Score
8.8
HIGH

Description

The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to inject crafted instructions into the agent's context. When a user runs the agent in a crafted repository as an untrusted workspace, sending any message can cause agent modifications to auto-loaded global configuration paths. We recommend you upgrade to Kiro IDE version 1.0.242 or later. Users who ran the agent in an untrusted workspace on an earlier version should also review the global Kiro configuration directory (~/.kiro) for entries they did not create.

Published
September 24, 2026 6:19 PM
Last Modified
September 24, 2026 7:36 PM
Source
ff89ba41-3aa1-4d27-914a-91399e9639e5

Weaknesses (CWE)

CWE-349 CWE-829

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.