<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Telerik UI for ASP.NET AJAX (&lt; 2026.3.812) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/telerik-ui-for-asp.net-ajax--2026.3.812/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 03 Sep 2026 00:08:03 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/telerik-ui-for-asp.net-ajax--2026.3.812/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Critical Vulnerabilities in Progress Telerik UI for ASP.NET AJAX</title><link>https://feed.craftedsignal.io/briefs/2026-09-progress-telerik-vulnerabilities/</link><pubDate>Thu, 03 Sep 2026 00:08:03 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-progress-telerik-vulnerabilities/</guid><description>Progress Software has patched two vulnerabilities, including path traversal (CVE-2026-18672) and input tampering (CVE-2026-19219), in Telerik UI for ASP.NET AJAX versions prior to 2026.3.812.</description><content:encoded><![CDATA[<p>Progress Software has released a security advisory concerning two vulnerabilities impacting Telerik UI for ASP.NET AJAX. The affected versions include all releases prior to 2026.3.812. The first vulnerability, CVE-2026-18672, is a path traversal flaw residing within the RadImageEditor component, which could allow an attacker to read or manipulate files on the underlying web server. The second vulnerability, CVE-2026-19219, involves improper handling of the DialogHandler UploadPaths configuration, potentially enabling unauthorized file uploads or system tampering. These vulnerabilities pose a significant risk to organizations hosting ASP.NET web applications that rely on the Telerik UI framework, as successful exploitation could lead to full system compromise or sensitive data exposure. Defenders should immediately identify all instances of Telerik UI for ASP.NET AJAX within their environment and upgrade to version 2026.3.812 or later to eliminate these attack vectors.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of these vulnerabilities allows unauthorized remote actors to bypass security controls in ASP.NET web applications. CVE-2026-18672 could lead to arbitrary file read or write access on the host server, while CVE-2026-19219 could be leveraged to gain remote code execution or facilitate persistent backdoors via unauthorized file uploads. Organizations across all sectors utilizing vulnerable Progress Telerik components are at risk of data exfiltration and server takeover.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize the identification and patching of all web applications using Progress Telerik UI for ASP.NET AJAX.</p>
<ul>
<li>Upgrade Telerik UI for ASP.NET AJAX to version 2026.3.812 or later immediately to resolve CVE-2026-18672 and CVE-2026-19219.</li>
<li>Audit web server logs for irregular POST requests to the DialogHandler and unusual file access patterns in the web root that may indicate attempted path traversal via RadImageEditor.</li>
<li>Implement strict file system permissions for the web application user to minimize the impact if path traversal is successfully exploited.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>web-application</category><category>patch-management</category></item></channel></rss>