HIGH

CVE-2026-18733

2026-08-03 CVSS v3.1
CVSS
8.8

Description

A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors to execute arbitrary operating system commands on the agent's host via a crafted prompt that sets the non_interactive parameter to true, bypassing the human consent gate.



To remediate this issue, users should upgrade to version 0.8.0.

Summary dbcve.org

This is a prompt injection vulnerability in the shell tool of Amazon Strands Agents Tools. The vulnerability allows remote attackers to bypass the human consent gate by crafting prompts that set the non_interactive parameter to true, enabling execution of arbitrary operating system commands on the host system running the agent.

Mitigation

Upgrade Amazon Strands Agents Tools to version 0.8.0 or later to remediate the prompt injection vulnerability that allows bypassing the human consent gate.

EPSS Score

0.32%
Probability of exploitation in next 30 days
25.5th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE