CVE-2026-102103 PUBLISHED

Kiteworks Email Protection Gateway server-side request forgery

Assigner: cisa-cg
Reserved: 28.09.2026 Published: 30.09.2026 Updated: 01.10.2026

Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-Side Request Forgery (SSRF). A server-side request forgery (SSRF) weakness in Kiteworks Email Protection Gateway could allow a remote, unauthenticated attacker to induce the gateway to issue crafted requests to internal or otherwise unintended network destinations. The requests are triggered while the gateway retrieves a certificate revocation list in an inbound message. Depending on the services reachable from the gateway, this could disclose sensitive internal information or disrupt gateway operation.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
CVSS Score: 9.1

Product Status

Vendor Kiteworks
Product Email Protection Gateway
Versions Default: unknown
  • affected from 0 to 9.5.0 (excl.)
  • Version 9.5.0 is unaffected

References

Problem Types

  • CWE-918 Server-Side Request Forgery (SSRF) CWE