CVE-2026-55069Kestra · Kestra
Vulnerability data via NVD (ingested)
Kestra is an open-source, event-driven orchestration platform. Prior to 1.3.24, this vulnerability exists in the BasicAuth authentication component of the Kestra OSS workflow orchestration platform. An attacker who gains read access to the PostgreSQL database can exploit SHA-512's high computation speed to recover the administrator password offline. In Kubernetes deployments, a successful crack further enables reading of the cluster ServiceAccount Token and all K8s Secrets, achieving vertical privilege escalation. This vulnerability is fixed in 1.3.24.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2026-55069product:"Kestra Kestra"http.html:"Kestra"More intel sources (5)
vuln:CVE-2026-55069vulnerabilities.cve_id: CVE-2026-55069CVE-2026-55069CVE-2026-55069"CVE-2026-55069" exploit -site:nvd.nist.gov