VulnSea

kiteworks_managed_file_transfer vulnerabilities

CVEs whose affected-version data names the kiteworks_managed_file_transfer package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2025-53900Medium· 6.5
10mo ago

Kiteworks MFT orchestrates end-to-end file transfer workflows

Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, an unfavourable definition of roles and permissions in Kiteworks MFT on managing Connections could lead to unexpected escalation of privileges for aut…

▾ Sunlitaccellion · kiteworks_managed_file_transferEPSS 1.1%via NVD
CVE-2025-53899High· 7.2
10mo ago

Kiteworks MFT orchestrates end-to-end file transfer workflows

Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, the back-end of Kiteworks MFT is vulnerable to an incorrectly specified destination in a communication channel which allows an attacker with administr…

▾ Twilightaccellion · kiteworks_managed_file_transferEPSS 0.94%via NVD
CVE-2025-53897Medium· 6.8
10mo ago

Kiteworks MFT orchestrates end-to-end file transfer workflows

Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, this vulnerability could allow an external attacker to gain access to log information from the system by tricking an administrator into browsing a spe…

▾ Sunlitaccellion · kiteworks_managed_file_transferEPSS 0.20%via NVD
CVE-2025-53896High· 7.1
10mo ago

Kiteworks MFT orchestrates end-to-end file transfer workflows

Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, a bug in Kiteworks MFT could cause under certain circumstances that a user's active session would not properly time out due to inactivity. This issue …

▾ Twilightaccellion · kiteworks_managed_file_transferEPSS 0.19%via NVD
kiteworks_managed_file_transfer vulnerabilities (CVEs) · VulnSea