CVE-2026-13183
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Description
In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through measurable timing differences, enabling remote attackers to recover protected metadata values.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-208
Source
NVD
Vendor
Progress Software
Product
Telerik UI for ASP.NET AJAX
Discussion (0)
Add Comment
No comments yet. Be the first!