CVE-2025-5591
EUVD-2026-091905.01.2026, 01:15
Kentico Xperience 13 is vulnerable to a stored cross-site scripting attack via a form component, allowing an attacker to hijack a victim user’s session and perform actions in their security context.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kentico | xperience | 13.0.0 ≤ 𝑥 < 13.0.167 |
𝑥
= Vulnerable software versions