VYPR
Unrated severityNVD Advisory· Published Oct 9, 2024· Updated Nov 3, 2025

Improper neutralization special element in hyperlinks

CVE-2024-7840

Description

In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a command injection attack is possible through improper neutralization of hyperlink elements.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.