CVE-2026-9255 - Tool Execution Without Authorization via Piped Stdin in Kiro CLI

Published 2026-08-20T21:35:57Z79322c48474ffd24d1a91fb29d875f5b4cae743efeb9732933b54a0b32a854a4

Source metadata

Publication date
2026-08-20T21:35:57Z
Source identifier
e443e91306bef487820f9f2bdb3a6e4c38edc7fa
Public record ID
record:sha256:79322c48474ffd24d1a91fb29d875f5b4cae743efeb9732933b54a0b32a854a4

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
79322c48474ffd24d1a91fb29d875f5b4cae743efeb9732933b54a0b32a854a4
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.