AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-95985.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSAwaiting NVD dataModified Sep 24, 2026

Disclosure summary

Bulletin ID: 2026-117-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/24/2026 10:00 AM PDT Description: Kiro is an agentic IDE that users install o

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

Latest Bulletins · RSS-3339aa7b467a6824e5b3ddd3a50091f7d55

Open original source · Updated Sep 24, 2026

CVE-2026-95985 - Kiro IDE Allows Agentic Writes to Global Configurations While Working in Untrusted Workspaces

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2026-09-24T13:21:34-04:00
MODIFIED 2026-09-24T13:21:34-04:00
INGESTED 2026-10-08T12:10:48-04:00