CVE-2025-53939 - Kiteworks Core is vulnerable to Improper Input Validation

CVE-2025-53939 - Kiteworks Core is vulnerable to Improper Input Validation

CVE ID : CVE-2025-53939 Published : Nov. 29, 2025, 3:15 a.m. | 1 hour, 26 minutes ago Description : Kiteworks is a private data network (PDN). Prior to version 9.1.0, improper input validation when managing roles of a shared folder could lead to unexpectedly elevate another user's permissions on the share. This issue has been patched in version 9.1.0. Severity: 6.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Nov. 29, 2025
Attack Vector: network

Source: Telegram CVE Monitor