CVE-2026-102104: CWE-918 Server-Side Request Forgery (SSRF) in Kiteworks Email Protection Gateway
Kiteworks Email Protection Gateway versions before 9.5.0 contain a Server-Side Request Forgery (SSRF) vulnerability. This flaw allows a remote, unauthenticated attacker to cause the gateway to send crafted requests to internal or unintended network destinations during online certificate status checks for inbound messages. Exploitation could lead to disclosure of sensitive internal information or disruption of gateway operations. The vulnerability has a high severity with a CVSS score of 9.1.
AI Analysis
Technical Summary
CVE-2026-102104 describes an SSRF vulnerability in Kiteworks Email Protection Gateway prior to version 9.5.0. The gateway performs online certificate status checks on inbound messages, which can be manipulated by an attacker to trigger requests to internal or unintended network endpoints. This SSRF weakness could be exploited remotely without authentication, potentially exposing sensitive internal data or causing denial of service conditions affecting the gateway's availability.
Potential Impact
An unauthenticated remote attacker can exploit this SSRF vulnerability to induce the gateway to make arbitrary requests to internal or otherwise unintended network destinations. This may lead to sensitive internal information disclosure or disruption of the gateway's operation, impacting confidentiality and availability.
Mitigation Recommendations
Upgrade Kiteworks Email Protection Gateway to version 9.5.0 or later, where this SSRF vulnerability is fixed. No other mitigation details are provided. Patch status is confirmed by the vendor advisory indicating the fix in version 9.5.0.
CVE-2026-102104: CWE-918 Server-Side Request Forgery (SSRF) in Kiteworks Email Protection Gateway
Description
Kiteworks Email Protection Gateway versions before 9.5.0 contain a Server-Side Request Forgery (SSRF) vulnerability. This flaw allows a remote, unauthenticated attacker to cause the gateway to send crafted requests to internal or unintended network destinations during online certificate status checks for inbound messages. Exploitation could lead to disclosure of sensitive internal information or disruption of gateway operations. The vulnerability has a high severity with a CVSS score of 9.1.
CVSS v3.1
Score 9.1critical
Affected software
Kiteworks
Email Protection Gateway
pkg:github/kiteworks/email-protection-gatewayRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-102104 describes an SSRF vulnerability in Kiteworks Email Protection Gateway prior to version 9.5.0. The gateway performs online certificate status checks on inbound messages, which can be manipulated by an attacker to trigger requests to internal or unintended network endpoints. This SSRF weakness could be exploited remotely without authentication, potentially exposing sensitive internal data or causing denial of service conditions affecting the gateway's availability.
Potential Impact
An unauthenticated remote attacker can exploit this SSRF vulnerability to induce the gateway to make arbitrary requests to internal or otherwise unintended network destinations. This may lead to sensitive internal information disclosure or disruption of the gateway's operation, impacting confidentiality and availability.
Mitigation Recommendations
Upgrade Kiteworks Email Protection Gateway to version 9.5.0 or later, where this SSRF vulnerability is fixed. No other mitigation details are provided. Patch status is confirmed by the vendor advisory indicating the fix in version 9.5.0.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- cisa-cg
- Date Reserved
- 2026-09-28T17:39:13.561Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6abd724b2a4e24523d8ebdf5
Added to database: 09/30/2026, 20:34:19 UTC
Last enriched: 09/30/2026, 21:18:15 UTC
Last updated: 09/30/2026, 22:27:53 UTC
Views: 3
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.