VYPR

Kiro

by Amazon

CVEs (1)

  • CVE-2026-95985HigSep 24, 2026
    risk 0.57cvss 8.8epss —

    The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to inject crafted instructions into the agent's context. When a user runs the agent in a crafted repository as an untrusted workspace, sending any message can cause agent…