Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-5429 | Amazon AWS Kiro IDE up to 0.8.139 Kiro Agent Webview cross site scripting (EUVD-2026-18519)
A vulnerability, which was classified as problematic, has been found in Amazon AWS Kiro IDE up to 0.8.139. This affects an unknown part of the component Kiro…
A vulnerability, which was classified as problematic, has been found in Amazon AWS Kiro IDE up to 0.8.139. This affects an unknown part of the component Kiro Agent Webview. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2026-5429. The attack is restricted to local execution. No exploit exists.
It is advisable to upgrade the affected component.
This vulnerability is tracked as CVE-2026-5429. The attack is restricted to local execution. No exploit exists.
It is advisable to upgrade the affected component.
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
CISA-SSVC-Triage (vulnrichment)CVE-2026-5429
Exploitation: none (Keine bekannte Ausnutzung)Automatable: no (Nicht automatisierbar)Technical Impact: total (Vollständig)
Quelle: CISA-ADP vulnrichment · Stand 2026-04-02T19:17:32.056447Z · CISA Coordinator
Advisory Radar
In herstellerseitiger Prüfung
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referenceaws.amazon.com
-
Web Referencekiro.dev