CVE-2026-28271
Kiteworks is a private data network (PDN). Prior to version 9.2.0, a vulnerability in Kiteworks configuration functionality allows bypassing of SSRF protections through DNS rebinding attacks. Malicious administrators could exploit this to access internal services that should be restricted. Version 9.2.0 contains a patch for the issue.
Vendor
Product
CWE
Yayın Tarihi
2026-02-27 21:16:18
Güncelleme
2026-03-04 19:49:31
Source Identifier
security-advisories@github.com
KEV Date Added
-