CVE-2024-12251

Publication date

2025-02-12 15:09:46

Family

ProgressSoftware

State

PUBLISHED

Description

In ProgressĀ® TelerikĀ® UI for WinUI versions prior to 2025 Q1 (3.0.0), a command injection attack is possible through improper neutralization of hyperlink elements.