CVE-2026-102103: Kiteworks Email Protection Gateway server-side request forgery
Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-Side Request Forgery (SSRF). A server-side request forgery (SSRF) weakness in Kiteworks Email Protection Gateway could allow a remote, unauthenticated attacker to induce the gateway to issue crafted requests to internal or otherwise unintended network destinations. The requests are triggered while the gateway retrieves a certificate revocation list in an inbound message. Depending on the services reachable from the gateway, this could disclose sensitive internal information or disrupt gateway operation.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Kiteworks Email Protection Gatewayto a version that resolves this vulnerability.Fixed in 9.5.0
Event History
Frequently Asked Questions
Which deployments are affected?
Kiteworks Email Protection Gateway deployments running versions earlier than 9.5.0 are affected. The issue is triggered during processing of an inbound message when the gateway retrieves a certificate revocation list.
Does exploitation require an authenticated account or user interaction?
No. The provided CVSS vector indicates network-based exploitation with low attack complexity, no privileges required, and no user interaction required.
What systems could an attacker reach through the gateway?
The attacker may cause the gateway to send crafted requests to internal or other unintended network destinations reachable from the gateway. Impact depends on what services the gateway can access, including potential disclosure of sensitive internal information or disruption of gateway operation.
What is the available remediation?
Upgrade Kiteworks Email Protection Gateway to version 9.5.0 or later. The affected range is explicitly versions before 9.5.0.