CVE-2024-12629
12.02.2025, 16:15
In Progress Telerik KendoReact versions v3.5.0 through v9.4.0, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection.
Vendor | Product | Version |
---|---|---|
telerik | kendoreact | 3.5.0 ≤ 𝑥 < 9.4.0 |
𝑥
= Vulnerable software versions