CVE-2024-7575: Telerik UI For Wpf

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible through improper neutralization of hyperlink elements.

Affected products

  • Telerik UI For Wpf: before 2024.3.924 (fixed in 2024.3.924)

Published 2024-09-25. Last modified 2026-06-17.