Loading
A stored cross-site scripting vulnerability in Kentico Xperience allows attackers to inject malicious scripts via the rich text editor component for page and form builders. Attackers can exploit this vulnerability by entering malicious URIs, potentially allowing malicious scripts to execute in users' browsers.
Use CWE-79, Kentico vendor hub and Xperience product page to widen CVE-2024-58318 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-53934, CVE-2025-5591 and CVE-2024-58320 for nearby disclosures in the same product family.