Threats Tagged 'cve-2026-89332'
View all threats tagged with 'cve-2026-89332'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-89332'
Click on any threat for detailed analysis and mitigation recommendations
Amazon Kiro IDE versions before 0.8.135 contain a vulnerability in the Kiro Powers feature where untrusted functionality can be included. This flaw allows remote unauthenticated actors to obtain sensitive information from a developer workstation by manipulating workspace settings to redirect registry requests to attacker-controlled endpoints. The issue is remediated by upgrading to version 0.8.135 or later. Users who opened projects in affected versions should rotate any credentials present in those projects. Join the discussion | GCVE Database | 09/11/2026, 21:31:25 UTC Added: 09/12/2026, 00:43:18 UTC |
0 Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE before version 0.8.135 might allow remote unauthenticated actors to obtain sensitive information from a developer workstation. Crafted repository content can cause the agent to modify the workspace settings file, which redirects the Kiro Powers registry request to an actor controlled endpoint and sends workspace data to that endpoint when the Powers panel is opened. To remediate this issue, users should upgrade to Kiro IDE version 0.8.135 or later. Users who opened a project in an earlier version should also rotate any credentials that were present in that project. Join the discussion | AWS Security Bulletins | 09/11/2026, 19:08:25 UTC Added: 09/11/2026, 19:15:29 UTC |
Showing 1 to 2 of 2 results