Kiteworks, a leading provider of secure file-sharing software, has released critical security patches to address 126 vulnerabilities in its Email Protection Gateway (EPG) solution. Among these, one particularly concerning issue is a maximum-severity code injection vulnerability that could allow attackers to gain complete control over the affected appliance.
The vulnerability, tracked as CVE-2026-54154, affects all releases of Kiteworks EPG prior to version 9.4.1 and can be exploited by an unauthenticated attacker without requiring user interaction. According to a detailed advisory released by Kiteworks, a combination of input-handling flaws in the EPG’s publicly reachable endpoints allows attackers to execute arbitrary code and eventually gain full administrative control over the appliance.
Kiteworks’ Private Content Network (PCN) is used by thousands of global corporations and government agencies, with over 100 million end-users. The company provides a range of services, including email protection, managed file transfer, and web forms, all integrated into a single platform. While Kiteworks has patched the vulnerability in version 9.4.1 or later, it is unclear how many instances of EPG remain exposed on the internet.
The patch release comes after a precautionary advisory was issued last week by Kiteworks, urging customers to shut down their servers due to threat intelligence warnings of an imminent zero-day cyberattack. Although the advisory has been lifted since, and all hosted customer systems have been brought back online, it remains uncertain whether any instances were compromised.
It’s essential for users to verify that their EPG appliances are running patched versions to prevent potential attacks. Furthermore, organizations using Kiteworks’ services should review their security protocols and consider conducting vulnerability assessments to identify any other potential weaknesses.
This latest incident highlights the importance of staying up-to-date with security patches and updates, especially when dealing with high-risk vulnerabilities like code injection flaws. As cyber threats continue to evolve, it’s crucial for users to remain vigilant and proactive in addressing potential security risks.
By prioritizing patching and regular vulnerability assessments, organizations can significantly reduce their exposure to cyber threats and ensure the integrity of their systems.
Source: Bleeping Computer — 2026-10-01