Amazon Kiro Cli
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Amazon Kiro Cli.
Recent Amazon Kiro Cli Security Advisories
| Advisory | Title | Published |
|---|---|---|
| 2026-05-22 | CVE-2026-9255 - Tool Execution Without Authorization via Piped Stdin in Kiro CLI | May 22, 2026 |
By the Year
In 2026 there have been 1 vulnerability in Amazon Kiro Cli with an average score of 7.8 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 7.80 |
It may take a day or so for new Kiro Cli vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Amazon Kiro Cli Security Vulnerabilities
Kiro CLI before 2.10.0 Uncontrolled Search Path Exec
CVE-2026-18657
7.8 - High
- August 04, 2026
An uncontrolled search path element in Kiro CLI before version 2.10.0 on Windows might allow a remote unauthenticated actor to execute arbitrary code via a maliciously crafted project directory containing an executable that bypasses workspace trust protections when a local user starts Kiro CLI in the directory. To remediate this issue, users should upgrade to version 2.10.0 or higher.
DLL preloading
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Amazon Kiro Cli or by Amazon? Click the Watch button to subscribe.