CVE-2026-102147 - Kiteworks Core Administrative Account Takeover through Stored Cross-site Scripting (XSS)
CVE ID :CVE-2026-102147 Published : Sept. 30, 2026, 9:17 p.m. | 1 hour, 22 minutes ago Description :A stored cross-site scripting (XSS) weakness in Kiteworks Core could allow an unauthenticated attacker to store crafted content that later executes arbitrary JavaScript in the authenticated...