CVE-2025-2794: Kentico Xperience

High severity, CVSS 8.7. EPSS: 0.5% chance of exploitation in the next 30 days.

An unsafe reflection vulnerability in Kentico Xperience allows an unauthenticated attacker to kill the current process, leading to a Denial-of-Service condition. This issue affects Xperience: through 13.0.180.

Affected products

  • Kentico Xperience: up to and including 13.0.180

Published 2025-03-31. Last modified 2026-06-17.