CVE-2026-23636
EUVD-2026-1554125.03.2026, 17:16
Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, the manager of a form could potentially exploit an Unrestricted Upload of File with Dangerous Type due to a missing validation. Upgrade Kiteworks to version 9.2.1 or later to receive a patch.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| accellion | kiteworks | 𝑥 < 9.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration