KEV Intelligence is becoming Previdian.

Kestra-io vendor intelligence

Kestra-io Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Kestra-io products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
1
Known exploited vulnerability affecting Kestra-io products
In CISA KEV
1
Records also listed in the official catalog
Beyond CISA KEV
0
Additional exploited vulnerabilities absent from CISA KEV
Sensor Observed
0
Kestra-io KEVs with sensor-observed exploitation activity

Review Kestra-io exploitation against the products you run

Review exploited Kestra-io vulnerabilities against the products you run. CISA KEV coverage is shown below.

100%
Covered by CISA
0%
Beyond CISA
1
Product families

Attested Kestra-io vulnerabilities

1 known exploited vulnerability in this exploited-vulnerability portfolio. Search, then narrow it to official CISA coverage or the additional records Previdian tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2026-49869

Kestra: Unauthenticated Remote Code Execution via Authentication Bypass in `AuthenticationFilter`

kestra Confirmed In CISA 02 Sep 2026

Showing 1 of 1 Kestra-io known exploited vulnerability.

Recurring weakness patterns

Incomplete list, authentication, and neutralization account for three mapped occurrences across this Kestra-io KEV portfolio.

Browse all KEVs →