A vulnerability classified as problematic was found in Kong Mesh up to 2.14.1. Affected by this vulnerability is an unknown functionality of the component Dataplane Token Validator. Executing a manipulation can lead to reachable assertion.

This vulnerability appears as CVE-2026-18675. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is advised.