Skip to main content

Vendor/product archive

amazon / kiro_ide CVEs

Beta · best-effort

2 CVEs tagged to amazon / kiro_ide0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2026-10591

Published Jun 2, 2026

Insufficient access control restrictions in the file write tool in Amazon Kiro IDE before version 0.11 might allow remote unauthenticated actors to execute arbitrary commands via…

CVSS 8.6 · High
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2026-0830

Published Jan 9, 2026

Processing specially crafted workspace folder names could allow for arbitrary command injection in the Kiro GitLab Merge-Request helper in Kiro IDE before version 0.6.18 when open…

CVSS 8.4 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1