Report: CVE-2026-6023 - Deserialization of Untrusted Data Vulnerability in Telerik UI for ASP.NET AJAX

Report: CVE-2026-6023 - Deserialization of Untrusted Data Vulnerability in Telerik UI for ASP.NET AJAX

CVE ID :CVE-2026-6023 Published : 22 Apr 2026, 8:16 a.m. | 49 minutes ago Description :In Progress® Telerik® UI for AJAX versions 2024.4.1114 through 2026.1.421, the RadFilter control is vulnerable to insecure deserialization when restoring filter state if the state is exposed to the client. If an attacker tampers with this state, a server-side remote code execution is possible. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Impact: remote code execution