CVE-2024-12251

In Progress Telerik UI for WinUI versions prior to 2025 Q1 (3.0.0), a command injection attack is possible through improper neutralization of hyperlink elements.

high 7.8 CVSS 3.1
Published: Feb 12, 2025
Modified: May 21, 2026
Vendor: Progress
Product: Telerik Ui For Winui