Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2019-10068

Kentico | XperienceAdded 2022-03-25Remediation Deadline 2022-04-15

Kentico Xperience Deserialization of Untrusted Data Vulnerability

Kentico contains a failure to validate security headers. This deserialization can led to unauthenticated remote code execution.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-502

References