Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 2 min 116 bronnen 1 kritiek 3 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2026-13184

HIGH · 7.5 CVSS Gepubliceerd: CWE-321

Beschrijving

In Progress® Telerik® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configured, upload metadata integrity protection may fall back to a predictable default key, enabling attackers to forge protected upload metadata and unlock further exploit chains.

Vendors

Progress

Affected products

Telerik Ui For Asp.net Ajax

References