kiteworks Vulnerabilities and Affected Products
Vulnerabilities associated with core.
Products
Clear product- Secure Data Forms11 vulnerabilities
- security-advisories10 vulnerabilities
- totemomail2 vulnerabilities
- core1 vulnerability
- Kiteworks Email Protection Gateway1 vulnerability
- OwnCloud1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2026-23514HIGH | Kiteworks Core before 9.2.2 is vulnerable to Improper Ownership ManagementKiteworks is a private data network (PDN). Versions 9.2.0 and 9.2.1 of Kiteworks Core have an access control vulnerability that allows authenticated users to access unauthorized content. Upgrade Kiteworks Core to version 9.2.2 or later to receive a patch. CWE-282Mar 25, 2026 | CVSS8.8v3.1 | EPSS1.04% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |