AWS Kiro Flaw: Hidden Web Page Text Could Trigger Remote Code Execution
A critical vulnerability in AWS Kiro, an agentic coding IDE, allowed a poisoned web page to rewrite its configuration file and execute…
A critical vulnerability in AWS Kiro, an agentic coding IDE, allowed a poisoned web page to rewrite its configuration file and execute…
Kiro is AWS's agentic coding IDE that can run shell commands, fetch URLs, and edit files. It was affected by a vulnerability…
Amazon fixed a prompt injection vulnerability in Kiro IDE that could lead to data exfiltration. The fix was implemented in version 0.8.140.