CVE-2026-24752
HIGH
NVD
CVSS Score
8.2
Severity
HIGH
Published
Jun 01, 2026
Vendor
unknown
Description
Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Data Forms could allow an external attacker to trick a user into executing arbitrary JavaScript code. Upgrade Kiteworks to version 9.3.0 or later to receive a patch.