A vulnerability was found in Kong Mesh up to 2.14.1 and classified as problematic. This vulnerability affects unknown code of the component KDS sync. Such manipulation leads to improper privilege management.

This vulnerability is uniquely identified as CVE-2026-18674. The attack can be launched remotely. No exploit exists.

It is suggested to upgrade the affected component.