CVE-2024-12629

Publication date

2025-02-12 15:37:51

Family

ProgressSoftware

State

PUBLISHED

Description

In ProgressĀ® TelerikĀ® KendoReact versions v3.5.0 through v9.4.0, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection.