A prompt injection vulnerability in AWS Kiro enabled manipulation of the mcp.json configuration file and code execution — AWS has implemented protection measures for sensitive file paths.
A security vulnerability in AWS Kiro allowed manipulation of IDE configuration and remote code execution through hidden content on websites without an approval mechanism.