Medium severity4.1NVD Advisory· Published Feb 12, 2025· Updated Jun 17, 2026
CVE-2024-12629
CVE-2024-12629
Description
In Progress® Telerik® KendoReact versions v3.5.0 through v9.4.0, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:progress:kendoreact:*:*:*:*:*:*:*:*Range: >=3.5.0,<9.4.0
- Range: v3.5.0 - v9.4.0
- Progress Software/Telerik KendoReactv5Range: 3.5.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.