CVE-2026-102114

A command injection vulnerability in Kiteworks could allow a high-privileged authenticated administrator to execute arbitrary operating-system commands as root on the affected appliance node. Successful exploitation requires an administrative account with elevated privileges.

  • Published Sep 30, 2026
  • CVSS 7.2 high
  • 1.0% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-102114 at the National Vulnerability Database