Kiteworks patches max severity flaw in Email Protection Gateway enabling root takeover
Kiteworks fixed CVE-2026-54154, a CVSS 10 flaw chain in its Email Protection Gateway that could let unauthenticated attackers run code as root. Version 9.4.1 fixes it.
