Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9jrm-mcr7-5p6m

Опубликовано: 18 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 7.5

Описание

A cryptography vulnerability in Kentico Xperience allows attackers to potentially manipulate URL hash values through existing hashing mechanisms. The hotfix introduces an additional security layer to prevent hash value reuse and potential exploitation.

A cryptography vulnerability in Kentico Xperience allows attackers to potentially manipulate URL hash values through existing hashing mechanisms. The hotfix introduces an additional security layer to prevent hash value reuse and potential exploitation.

EPSS

Процентиль: 4%
0.00019
Низкий

6.9 Medium

CVSS4

7.5 High

CVSS3

Дефекты

CWE-327

Связанные уязвимости

CVSS3: 7.5
nvd
около 2 месяцев назад

A cryptography vulnerability in Kentico Xperience allows attackers to potentially manipulate URL hash values through existing hashing mechanisms. The hotfix introduces an additional security layer to prevent hash value reuse and potential exploitation.

EPSS

Процентиль: 4%
0.00019
Низкий

6.9 Medium

CVSS4

7.5 High

CVSS3

Дефекты

CWE-327