Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4543 | In Progress® Telerik® Kendo UI for Vue versions v2.4.0 through v6.0.1, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection. |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 27 Jun 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Progress
Progress kendo Ui For Vue |
|
| CPEs | cpe:2.3:a:progress:kendo_ui_for_vue:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Telerik
Telerik kendo Ui For Vue |
Progress
Progress kendo Ui For Vue |
Fri, 21 Feb 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Telerik
Telerik kendo Ui For Vue |
|
| CPEs | cpe:2.3:a:telerik:kendo_ui_for_vue:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Telerik
Telerik kendo Ui For Vue |
Wed, 12 Feb 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Feb 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Progress® Telerik® Kendo UI for Vue versions v2.4.0 through v6.0.1, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection. | |
| Title | Prototype Pollution in Progress® Telerik® Kendo UI for Vue | |
| Weaknesses | CWE-1321 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2025-02-12T19:06:31.802Z
Reserved: 2024-11-22T16:53:24.915Z
Link: CVE-2024-11628
Updated: 2025-02-12T19:06:11.532Z
Status : Analyzed
Published: 2025-02-12T17:15:22.067
Modified: 2025-06-27T19:18:38.750
Link: CVE-2024-11628
No data.
OpenCVE Enrichment
No data.
EUVD