CVE-2021-47712

A

cryptography vulnerability in Kentico Xperience allows attackers to potentially manipulate URL hash values through existing hashing mechanisms. The hotfix introduces an additional security layer to prevent hash value reuse and potential exploitation.

Configurations

Configuration 1 (hide)

cpe:2.3:a:kentico:xperience:*:*:*:*:*:*:*:*

History

24 Dec 2025, 18:14

Type Values Removed Values Added
CPE cpe:2.3:a:kentico:xperience:*:*:*:*:*:*:*:*
References () https://devnet.kentico.com/download/hotfixes - () https://devnet.kentico.com/download/hotfixes - Product
References () https://www.vulncheck.com/advisories/kentico-xperience-url-hashing-cryptography-vulnerability - () https://www.vulncheck.com/advisories/kentico-xperience-url-hashing-cryptography-vulnerability - Third Party Advisory
First Time Kentico xperience
Kentico

19 Dec 2025, 18:00

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-18 20:15

Updated : 2025-12-24 18:14


NVD link : CVE-2021-47712

Mitre link : CVE-2021-47712

CVE.ORG link : CVE-2021-47712


JSON object : View

Products Affected
CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm