Vendor
Kentico
As of , 4 Kentico vulnerabilities are on CISA's list of exploited vulnerabilities; 1 was added in 2026. Patch first: CVE-2019-10068.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2019-10068Deserialization of Untrusted Data | Kentico Xperience | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| 2 | CVE-2025-2746Authentication Bypass Using an Alternate Path or Channel | Kentico Xperience CMS | Patch this weekEPSS 0.73 | 0.73 | ||
| 3 | CVE-2025-2747Authentication Bypass Using an Alternate Path or Channel | Kentico Xperience CMS | Patch this weekEPSS 0.97 | 0.97 | ||
| 4 | CVE-2025-2749Path Traversal | Kentico Kentico Xperience | Patch soon | 0.04 |
Products
- Xperience CMS2 entries
- Kentico Xperience1 entry
- Xperience1 entry
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2022 | 1 |
| 2023 | none |
| 2024 | none |
| 2025 | 2 |
| 2026 | 1 |