Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vf2r-6g4x-jc4h

Опубликовано: 22 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In Progress® Telerik® UI for AJAX prior to 2026.1.421, RadAsyncUpload contains an uncontrolled resource consumption vulnerability that allows file uploads to exceed the configured maximum size due to missing cumulative size enforcement during chunk reassembly, leading to disk space exhaustion.

In Progress® Telerik® UI for AJAX prior to 2026.1.421, RadAsyncUpload contains an uncontrolled resource consumption vulnerability that allows file uploads to exceed the configured maximum size due to missing cumulative size enforcement during chunk reassembly, leading to disk space exhaustion.

EPSS

Процентиль: 21%
0.00288
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
nvd
4 месяца назад

In Progress® Telerik® UI for AJAX prior to 2026.1.421, RadAsyncUpload contains an uncontrolled resource consumption vulnerability that allows file uploads to exceed the configured maximum size due to missing cumulative size enforcement during chunk reassembly, leading to disk space exhaustion.

EPSS

Процентиль: 21%
0.00288
Низкий

7.5 High

CVSS3

Дефекты

CWE-400