| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2021-47711 | Kentico Xperience <= 13.0.52 Online Marketing Macros SQL Injection | Kentico | Xperience | High | 8.8 | 2025-12-18 19:53:27 | Deep Dive |
| CVE-2020-36891 | Kentico Xperience <= 12.0.49 File Upload Stored XSS | Kentico | Xperience | Medium | 5.4 | 2025-12-18 19:53:26 | Deep Dive |
| CVE-2020-36890 | Kentico Xperience <= 10 Administrator Access Control Bypass | Kentico | Xperience | High | 7.2 | 2025-12-18 19:53:26 | Deep Dive |
| CVE-2020-36889 | Kentico Xperience <= 12.0.90 Administration Interface Stored XSS | Kentico | Xperience | Medium | 5.4 | 2025-12-18 19:53:25 | Deep Dive |
| CVE-2019-25230 | Kentico Xperience <= 12.0.0 User Widget Information Disclosure | Kentico | Xperience | Medium | 4.3 | 2025-12-18 19:53:25 | Deep Dive |
| CVE-2019-25228 | Kentico Xperience <= 12.0.47 Virtual Context Information Disclosure | Kentico | Xperience | Medium | 5.3 | 2025-12-18 19:53:24 | Deep Dive |
| CVE-2019-25229 | Kentico Xperience <= 12.0.29 MVC Forms Unrestricted File Upload | Kentico | Xperience | High | 8.8 | 2025-12-18 19:53:24 | Deep Dive |
| CVE-2025-32369 | Kentico Xperience 安全漏洞 | Kentico | Xperience | Medium | 6.4 | 2025-04-06 00:00:00 | Deep Dive |
| CVE-2025-32370 | Kentico Xperience 安全漏洞 | Kentico | Xperience | High | 7.2 | 2025-04-06 00:00:00 | Deep Dive |
| CVE-2025-2794 | Kentico Xperience <= 13.0.180 Unsafe Reflection | Kentico | Xperience | 高危 | - | 2025-03-31 16:22:49 | Deep Dive |
| CVE-2025-2878 | Kentico CMS Additional Database Installation Wizard install.aspx cross site scripting | Kentico | CMS | Low | 2.4 | 2025-03-27 23:00:11 | Deep Dive |
| CVE-2025-2748 | Kentico Xperience stored cross-site scripting in multiple-file upload functionality | Kentico | Xperience | Medium | 6.1 | 2025-03-24 18:22:31 | Deep Dive |
| CVE-2025-2749 | Kentico Xperience <= 13.0.178 Staging Media File Upload Authenticated RCE | Kentico | Xperience | High | 7.2 | 2025-03-24 18:18:07 | Deep Dive |
| CVE-2025-2747 | Kentico Xperience <= 13.0.178 Staging Sync Server None Password Type Authentication Bypass | Kentico | Xperience | Critical | 9.8 | 2025-03-24 18:17:06 | Deep Dive |
| CVE-2025-2746 | Kentico Xperience <= 13.0.172 Staging Sync Server Digest Password Authentication Bypass | Kentico | Xperience | Critical | 9.8 | 2025-03-24 18:16:04 | Deep Dive |
| CVE-2024-12907 | XSS in Kentico 7 | Kentico | Kentico CMS | 中危 | - | 2025-01-02 15:59:13 | Deep Dive |
| CVE-2021-43991 | Persistent XSS via Avatar Upload in Kentico Xperience CMS | Kentico | Kentico Xperience XMS | Medium | 6.8 | 2021-12-03 14:42:31 | Deep Dive |