CVE-2025-2794: Kentico Xperience
High severity, CVSS 8.7. EPSS: 0.5% chance of exploitation in the next 30 days.
An unsafe reflection vulnerability in Kentico Xperience allows an unauthenticated attacker to kill the current process, leading to a Denial-of-Service condition. This issue affects Xperience: through 13.0.180.
Affected products
- Kentico Xperience: up to and including 13.0.180
Published 2025-03-31. Last modified 2026-06-17.