CVE-2024-12251
EUVD-2024-5071512.02.2025, 15:15
In ProgressĀ® TelerikĀ® UI for WinUI versions prior to 2025 Q1 (3.0.0), a command injection attack is possible through improper neutralization of hyperlink elements.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| telerik | ui_for_winui | 2.0.0 ≤ 𝑥 < 3.0.0 |
𝑥
= Vulnerable software versions