CVE-2025-53939 – Kiteworks Core is vulnerable to Improper Input Validation

CVE ID : CVE-2025-53939

Published : Nov. 29, 2025, 3:15 a.m. | 1 hour, 8 minutes ago

Description : Kiteworks is a private data network (PDN). Prior to version 9.1.0, improper input validation when managing roles of a shared folder could lead to unexpectedly elevate another user’s permissions on the share. This issue has been patched in version 9.1.0.

Severity: 6.3 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه