Skip to content

CVE-2026-54154

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
October 1, 2026
Last Seen
October 1, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Kiteworks has patched a maximum-severity vulnerability (CVE-2026-54154) affecting its Email Protection Gateway (EPG), which could allow unauthenticated remote attackers to execute arbitrary code. The flaw, reported through Kiteworks' bug bounty program, affects all EPG versions prior to 9.4.1. Kitew...

Public Exploits

Checking GitHub for proof-of-concept code…