ZeroHour

CVE-2025-32369

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p19
Published
()
Modified
Description

Kentico Xperience before 13.0.181 allows authenticated users to distribute malicious content (for stored XSS) via certain interactions with the media library file upload feature.

Vendors
kentico
Products
xperience
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.