All 15 CVE vulnerabilities found in kestra, with AI-generated Chinese analysis, references, and POCs.
This page aggregates publicly reported security vulnerabilities affecting Kestra, the open-source workflow orchestration platform developed by Kestra Inc. The collection covers a broad range of defect classes, including remote code execution, privilege escalation, and deserialization flaws, spanning advisories published from 2021 through the current year. Readers can use this index to track the vendor's advisory history, analyze recurring weakness patterns within a single product, or cross-reference specific vulnerability records by date and severity. The interface groups entries by CWE type and publication timestamp, enabling efficient filtering for trend analysis and risk assessment without requiring individual CVE lookups. This structured overview supports security teams in evaluating the long-term resilience of the Kestra ecosystem and identifying systemic weaknesses that persist across multiple releases.
Vendor: kestra-io
All 15 known CVE vulnerabilities affecting kestra with full Chinese analysis, references, and POCs where available.