Kigana - Notice history

Website - Operational

100% - uptime
Jan 2026 · 100.0%Feb · 99.83%Mar · 98.95%
Jan 2026
Feb 2026
Mar 2026

API - Operational

100% - uptime
Jan 2026 · 100.0%Feb · 100.0%Mar · 98.95%
Jan 2026
Feb 2026
Mar 2026

Notice history

Mar 2026

Authentication Issues
  • Postmortem
    Postmortem

    Earlier today we were notified of an issue where a user briefly saw another user's dashboard after signing in to Kigana.

    We immediately took the production environment offline and invalidated our CDN caches while we investigated the report. Our investigation identified the cause as an interaction between a recent authentication library update and our CDN caching configuration.

    Under rare circumstances, this interaction could cause a cached page to be served with incorrect session context. We implemented a fix the same day to ensure that authentication-related responses are never cached and that session handling is separated from cached application pages.

    At this time we have only one confirmed report of this behavior. The issue was detected shortly after the deployment and addressed quickly.

    We have added additional safeguards to our infrastructure to prevent this class of issue from occurring again.

    If you have any questions or observed unexpected behavior, please contact us at support@kigana.com.

  • Resolved
    Resolved

  • Monitoring
    Monitoring
    We implemented a fix and are currently monitoring the result.
  • Update
    Update

    We have implemented a fix and are performing further tests to verify.

  • Update
    Update

    We have identified the issue to be due to a known security vulnerability in our supply chain (CVE-2025-48947). We are investigating a fix.

  • Identified
    Identified

    We were informed about an authentication issue. We have temporarily disabled the service while we investigate the problem.

Jan 2026 to Mar 2026

Next