Every CVE whose affected-product data names Amazon Kiro Ide, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (3)
CVE-2026-10591 — CVSS 8.8 (high): Insufficient access control restrictions in the file write tool in Amazon Kiro IDE before version 0.11 might allow remote unauthenticated…
CVE-2026-0830 — CVSS 7.8 (high): Processing specially crafted workspace folder names could allow for arbitrary command injection in the Kiro GitLab Merge-Request helper in…
CVE-2026-18656 — CVSS 7.8 (high): An uncontrolled search path element in Kiro IDE before version 1.0.228 on Windows might allow a remote unauthenticated actor to execute…