Description
In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processing and enabling chained exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 22 Jul 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processing and enabling chained exploitation. | |
| Title | DialogHandler Provider Type Tampering Vulnerability in Telerik UI for ASP.NET AJAX | |
| Weaknesses | CWE-470 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2026-07-22T13:40:21.443Z
Reserved: 2026-06-24T13:46:41.002Z
Link: CVE-2026-13187
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-470
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')