Security Advisory

CVE-2024-12629

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-12 15:37:51
Last updated 2025-02-12 15:55:43
Assigner ProgressSoftware
State PUBLISHED

Description

In Progress® Telerik® KendoReact versions v3.5.0 through v9.4.0, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection.