CVE-2025-2794

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
31/03/2025
Last modified:
04/11/2025

Description

An unsafe reflection vulnerability in Kentico Xperience allows an unauthenticated attacker to kill the current process, leading to a Denial-of-Service condition.<br /> <br /> <br /> <br /> <br /> This issue affects Xperience: through 13.0.180.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kentico:xperience:*:*:*:*:*:*:*:* 13.0.180 (including)