Kiteworks · Kiteworks · CVE-2026-24752
**Name of the Vulnerable Software and Affected Versions**
Kiteworks versions prior to 9.3.0
**Description**
Kiteworks is a private data network (PDN). A reflected Cross-Site Scripting (XSS) issue in Kiteworks Secure Data Forms allows an external attacker to trick a user into executing arbitrary JavaScript code.
**Recommendations**
Upgrade to version 9.3.0 or later.