Kestra Vulnerabilities

1 advisories affecting Kestra

1

Total CVEs

1

Critical

0

High

CVE-2026-49869

Jun 26, 2026

Critical 10.0

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, AuthenticationFilter in Kestra OSS uses request.getPath().endsWith("/configs") to whitelist the public config...

Read Advisory

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.