Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, a misconfiguration of the security attributes could potentially lead to Unprotected Transport of Credentials under certain circumstances. Upgrade Kiteworks to version 9.2.1 or later to receive a patch.
References
| Link | Resource |
|---|---|
| https://github.com/kiteworks/security-advisories/security/advisories/GHSA-9hw2-6qp4-3v8f | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-03-25 17:16
Updated : 2026-03-27 19:16
NVD link : CVE-2026-23635
Mitre link : CVE-2026-23635
CVE.ORG link : CVE-2026-23635
JSON object : View
Products Affected
accellion
- kiteworks
CWE
CWE-523
Unprotected Transport of Credentials
