MikeTrendsTrends right now

search

Email Protection Gateway

Trends

  1. 1
    Critical Authentication Flaw Reported in Kiteworks Email Protection Gatewayโ—CVE-2026-102106 (CRITICAL, CVSS 9.1): Kiteworks Email Protection Gateway ( https:// radar.offseq.com/threat/cve-20 26-10MmastodonTechnologyCybersecurity112 h ago

    A critical vulnerability tracked as CVE-2026-102106, carrying a CVSS score of 9.1, has been disclosed affecting Kiteworks' Email Protection Gateway. The flaw is classified as improper authentication, meaning attackers could potentially bypass identity checks to gain unauthorized access. Security professionals are circulating the advisory and urging organizations using the product to review exposure and apply patches.

  2. 2
    Kiteworks Email Protection Gateway vulnerability tracked as CVE-2026-102105โ—CVE-2026-102105: Kiteworks Email Protection Gateway https:// radar.offseq.com/threat/cve-20 26-102105-cwe-918-server-sidMmastodonTechnologyCybersecurity115 h ago

    A server-side request forgery (SSRF) flaw in Kiteworks' Email Protection Gateway has been catalogued as CVE-2026-102105. Vulnerability-tracking services have added the issue to their radar, flagging it to security teams. Kiteworks is a platform used to share files and sensitive communications securely, so a flaw in its email gateway draws attention from defenders concerned attackers could abuse it to probe internal networks.

  3. 3
    Critical Kiteworks Email Gateway Flaw Tracked as CVE-2026-102149โ—๐Ÿšจ CVE-2026-102149 โ€” CVSS 9.4 CRITICAL Kiteworks Email Protection Gateway did not sufficiently restrict which account a cMmastodonTechnologyCybersecurity022 h ago

    A critical vulnerability, CVE-2026-102149, with a CVSS score of 9.4 has been disclosed in Kiteworks' Email Protection Gateway. The flaw stems from insufficient restrictions on which account a certificate could be assigned to, potentially letting an attacker associate a certificate with another user's account and compromising confidentiality. Security observers are flagging the issue and urging organizations using the gateway to review exposure and apply fixes.

  4. 4
    Kiteworks Email Protection Gateway vulnerability logged with moderate severityโ–ผ๐Ÿšจ EUVD-2026-90275 ๐Ÿ“Š Score: 6.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: Email Protection Gateway ๐Ÿข Vendor: Kiteworks ๐Ÿ“… Updated: 2026-09MmastodonTechnologyCybersecurity023 h ago

    A new vulnerability, EUVD-2026-90275, has been recorded for Kiteworks' Email Protection Gateway, with a CVSS v3.1 score of 6.5 out of 10. The flaw concerns an authorization check in the large file exchange feature that failed to correctly verify whether the requesting user was entitled to access the resource. The entry was updated on 30 September 2026. Security teams monitoring Kiteworks deployments are expected to review the advisory and patch guidance.

  5. 5
    Critical Kiteworks Email Protection Gateway flaw disclosedโ—๐Ÿšจ CVE-2026-102106 โ€” CVSS 9.1 CRITICAL Improper authentication in a Kiteworks Email Protection Gateway administrative serMmastodonTechnologyCybersecurity022 h ago

    A critical vulnerability, CVE-2026-102106, has been disclosed in Kiteworks Email Protection Gateway, rated CVSS 9.1. The flaw involves improper authentication: an administrative service did not consistently enforce administrator authentication, meaning the required password check could be bypassed. Security researchers are flagging the issue as it could allow unauthorized administrative access to the gateway, potentially exposing sensitive email protection infrastructure.

  6. 6
    Critical SSRF vulnerability disclosed in Kiteworks Email Protection Gatewayโ—๐Ÿšจ CVE-2026-102105 โ€” CVSS 9.1 CRITICAL Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-SiMmastodonTechnologyCybersecurity022 h ago

    A critical vulnerability, CVE-2026-102105, has been disclosed in Kiteworks Email Protection Gateway versions before 9.5.0. The flaw, rated CVSS 9.1, is a server-side request forgery that could let a remote, unauthenticated attacker send requests from the affected server. Security teams are being urged to update to version 9.5.0 or later to close the issue.

  7. 7
    Critical SSRF flaw reported in Kiteworks Email Protection Gatewayโ—๐Ÿšจ CVE-2026-102104 โ€” CVSS 9.1 CRITICAL Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-SiMmastodonTechnologyCybersecurity022 h ago

    A critical vulnerability, tracked as CVE-2026-102104 with a CVSS score of 9.1, has been disclosed in Kiteworks Email Protection Gateway versions before 9.5.0. The flaw is a server-side request forgery (SSRF) issue that could allow a remote, unauthenticated attacker to manipulate the gateway. Security teams are being urged to check whether their deployments are affected and update to version 9.5.0 or later.