Security Advisory

CVE-2026-14932

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-22 13:46:45
Last updated 2026-07-22 19:09:34
Assigner ProgressSoftware
CVSS score 6.5
State PUBLISHED

Description

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated file read and deletion of image-extension files within the application directory.