CVE-2024-6327: Progress Telerik Report Server

Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.

In Progress® Telerik® Report Server versions prior to 2024 Q2 (10.1.24.709), a remote code execution attack is possible through an insecure deserialization vulnerability.

Affected products

  • Progress Telerik Report Server: before 10.1.24.709 (fixed in 10.1.24.709)

Published 2024-07-24. Last modified 2026-06-17.