CVE-2026-18733

A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors to execute arbitrary operating system commands on the agent's host via a crafted prompt that sets the non_interactive parameter to true, bypassing the human consent gate. To remediate this issue, users should upgrade to version 0.8.0.

Scoring

Severity
HIGH
CVSS base score
8.8
CVSS vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS probability
0.32%
CWE
CWE-1427
Published
2026-08-03
Last modified
2026-08-04

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs