Kiteworks is a private data network (PDN). Versions 9.2.0 and 9.2.1 of Kiteworks Core have an access control vulnerability that allows authenticated users to access unauthorized content. Upgrade Kiteworks Core to version 9.2.2 or later to receive a patch.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 25 Mar 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kiteworks is a private data network (PDN). Versions 9.2.0 and 9.2.1 of Kiteworks Core have an access control vulnerability that allows authenticated users to access unauthorized content. Upgrade Kiteworks Core to version 9.2.2 or later to receive a patch. | |
| Title | Kiteworks Core before 9.2.2 is vulnerable to Improper Ownership Management | |
| Weaknesses | CWE-282 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-03-25T14:45:43.015Z
Reserved: 2026-01-13T18:22:43.979Z
Link: CVE-2026-23514
Updated: 2026-03-25T14:45:31.918Z
Status : Awaiting Analysis
Published: 2026-03-25T15:16:37.967
Modified: 2026-03-25T15:41:33.977
Link: CVE-2026-23514
No data.
OpenCVE Enrichment
No data.