CNNVD-202601-4368 Information
Jan 26, 2026
cve
CNNVD ID
CNNVD-202601-4368
Related CVE
- CNNVD Published: 2026-01-26
Description (Chinese)
Kite是美国Kite公司的一款AI代码开发工具。 Kite 1.2020.1119.0版本存在代码问题漏洞,该漏洞源于KiteService服务路径未加引号,可能导致本地执行任意代码。
Description (English)
Kite is an AI code development tool for the United States company Kite. Kite 1.2020.1119.0 has a code gap, which stems from the lack of quotation marks on the service path of KiteService, which may lead to local implementation of any code.
Hazard Level
Medium
Vulnerability Type
代码问题
Affected Vendor
Kite
Published
2026-01-26
Last Modified
2026-02-24
References
https://www.exploit-db.com/exploits/49205 https://www.kite.com/ https://www.vulncheck.com/advisories/kite-kiteservice-unquoted-service-path
Share on: