CVE-2026-106164
EUVD-2026-9454507.10.2026, 19:17
In Progress® Telerik® Document Processing SpreadProcessing library, versions prior to 2026.3.1006, an infinite loop vulnerability exists when importing an XLS file with a specifically-targted corruption, the import timeout is ignored resulting in an unresponsive CPU thread and denial of service.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| progress | telerik_document_processing_libraries | 2026.3.811 ≤ 𝑥 < 2026.3.1006 | CNA |
Common Weakness Enumeration