MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 11 h ago, last 11 h ago, peak #6

Critical Kiteworks Email Gateway Flaw Tracked as CVE-2026-102149

Original: 🚨 CVE-2026-102149 — CVSS 9.4 CRITICAL Kiteworks Email Protection Gateway did not sufficiently restrict which account a c

A critical vulnerability, CVE-2026-102149, with a CVSS score of 9.4 has been disclosed in Kiteworks' Email Protection Gateway. The flaw stems from insufficient restrictions on which account a certificate could be assigned to, potentially letting an attacker associate a certificate with another user's account and compromising confidentiality. Security observers are flagging the issue and urging organizations using the gateway to review exposure and apply fixes.

Why now: A newly disclosed critical vulnerability in a widely used secure email gateway raises immediate concerns about certificate-based account impersonation.

KiteworksCVE-2026-102149Email Protection Gateway

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/535086