Serial number: AV26-875Date: September 2, 2026 As of September 2, 2026, Progress Software is affected by vulnerabilities in the following product: Telerik UI for ASP.NET AJAX Prior to 2026.3.812 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Telerik Web Forms RadImageEditor Path Traversal Vulnerability (CVE-2026-18672) Telerik Web Forms DialogHandler UploadPaths Tampering Vulnerability (CVE-2026…
Progress Software ha rilasciato aggiornamenti di sicurezza per sanare tre vulnerabilità con gravità “alta” in Progress ShareFile Storage Zones Controller. Tali vulnerabilità, qualora sfruttate, potrebbero permettere a un utente malintenzionato di eseguire codice arbitrario sul sistema interessato, eludere i meccanismi di validazione e scrivere file in posizioni non autorizzate.
This vulnerability allows remote attackers to escalate privileges on affected installations of Progress Software Kemp LoadMaster. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2026-59690.
This vulnerability allows remote attackers to escalate privileges on affected installations of Progress Software Kemp LoadMaster. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2026-59689.