Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, a misconfiguration of the security attributes could potentially lead to Unprotected Transport of Credentials under certain circumstances. Upgrade Kiteworks to version 9.2.1 or later to receive a patch.
References
| Link | Resource |
|---|---|
| https://github.com/kiteworks/security-advisories/security/advisories/GHSA-9hw2-6qp4-3v8f | Vendor Advisory |
Configurations
History
27 Mar 2026, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| References | () https://github.com/kiteworks/security-advisories/security/advisories/GHSA-9hw2-6qp4-3v8f - Vendor Advisory | |
| CPE | cpe:2.3:a:accellion:kiteworks:*:*:*:*:*:*:*:* | |
| First Time |
Accellion kiteworks
Accellion |
25 Mar 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-25 17:16
Updated : 2026-06-17 10:21
NVD link : CVE-2026-23635
Mitre link : CVE-2026-23635
CVE.ORG link : CVE-2026-23635
JSON object : View
Products Affected
accellion
- kiteworks
CWE
CWE-523
Unprotected Transport of Credentials
