CVE-2026-18733
Description
A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors to execute arbitrary operating system commands on the agent's host via a crafted prompt that sets the non_interactive parameter to true, bypassing the human consent gate.
To remediate this issue, users should upgrade to version 0.8.0.
Summary dbcve.org
This is a prompt injection vulnerability in the shell tool of Amazon Strands Agents Tools. The vulnerability allows remote attackers to bypass the human consent gate by crafting prompts that set the non_interactive parameter to true, enabling execution of arbitrary operating system commands on the host system running the agent.
Mitigation
Upgrade Amazon Strands Agents Tools to version 0.8.0 or later to remediate the prompt injection vulnerability that allows bypassing the human consent gate.