PatchSiren

Kiuwan CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Kiuwan CVE published 2026-04-14

CVE-2026-24069

CVE-2026-24069 is a medium-severity improper authorization vulnerability in Kiuwan SAST that allows disabled user accounts to maintain access via SSO authentication. The flaw stems from inadequate synchronization between local account status and SSO authorization decisions. Kiuwan Cloud and on-premise deployments before version 2.8.2509.4 are affected. The vulnerability was published on April 14, 2026, wi [truncated]