Vulnerability index

Browse CVEs

259 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Connection Manager For Objectscale HIGH 8.4
CVE-2026-59687

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.4
CVE-2026-59688

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.0
CVE-2026-59689

An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF all…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.0
CVE-2026-59690

A Missing Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, MOVEit WAF, and Multi…

Fix: 7.1.35.16 / 7.2.54.19+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.4
CVE-2026-59686

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Moveit Transfer MEDIUM 5.4
CVE-2026-15968

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer. This issue affects M…

Fix: 2025.1.5 / 2026.0.3+
Fix from $1,600 2026-07-23
Moveit Transfer CRITICAL 9.8
CVE-2026-15966

Permissive cross-domain security policy with untrusted domains vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before…

Fix: 2025.1.5 / 2026.0.3+
Fix from $2,300 2026-07-23
Moveit Transfer CRITICAL 9.8
CVE-2026-15967

Insufficient session expiration vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before 2025.1.5, from 2026.0.0 before…

Fix: 2025.1.5 / 2026.0.3+
Fix from $2,300 2026-07-23
Moveit Transfer CRITICAL 9.8
CVE-2026-10697

Improper Authentication vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before 2025.1.5, from 2026.0.0 before 2026.0.…

Fix: 2025.1.5 / 2026.0.3+
Fix from $2,300 2026-07-23
Telerik Ui For Asp.net Ajax MEDIUM 6.5
CVE-2026-14932

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated fil…

Fix: 2026.2.708+
Fix from $1,600 2026-07-22
Telerik Ui For Asp.net Ajax MEDIUM 5.3
CVE-2026-14865

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processin…

Fix: 2026.2.708+
Fix from $1,600 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 8.1
CVE-2026-13185

In Progress® Telerik® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 8.1
CVE-2026-13186

In Progress® Telerik® UI for AJAX prior to v2026.2.708, a path traversal vulnerability in the file-based persistence storage provider can be exploite…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 8.1
CVE-2026-13187

In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processin…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 8.1
CVE-2026-13190

In Progress® Telerik® UI for AJAX prior to v2026.2.708, a deserialization vulnerability in the persistence utilities allows unsafe type instantiation…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 7.5
CVE-2026-13189

In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of the language parameter in the spell check handler may allow an att…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax MEDIUM 6.5
CVE-2026-13192

In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an…

Fix: 2026.2.708+
Fix from $1,600 2026-07-22
Telerik Ui For Asp.net Ajax MEDIUM 5.9
CVE-2026-13188

In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-sid…

Fix: 2026.2.708+
Fix from $1,600 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 8.1
CVE-2026-13181

In Progress® Telerik® UI for AJAX prior to v2026.2.708, forged upload metadata can influence AsyncUploadTypeName processing and trigger unsafe attack…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 7.5
CVE-2026-13182

In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload client-state processing can distinguish decrypt failures from invalid-JSON par…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 7.5
CVE-2026-13183

In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through measurable …

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Telerik Ui For Asp.net Ajax HIGH 7.5
CVE-2026-13184

In Progress® Telerik® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configure…

Fix: 2026.2.708+
Fix from $1,950 2026-07-22
Moveit Transfer CRITICAL 9.8
CVE-2026-8801

Path equivalence: vulnerability in Progress MOVEit Transfer (File Upload modules). This issue affects MOVEit Transfer: before 2025.0.8, from 2025.1.…

Fix: 2025.0.8 / 2025.1.4+
Fix from $2,300 2026-07-08
Moveit Transfer CRITICAL 9.8
CVE-2026-8649

Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affec…

Fix: 2025.0.7 / 2025.1.3+
Fix from $2,300 2026-07-08
Moveit Transfer HIGH 8.8
CVE-2026-8800

Incorrect Authorization vulnerability in Progress MOVEit Transfer (Audit User module). This issue affects MOVEit Transfer: before 2025.0.7, from 202…

Fix: 2025.0.7 / 2025.1.3+
Fix from $1,950 2026-07-08
Moveit Transfer HIGH 7.5
CVE-2026-8650

Relative path traversal vulnerability in Progress MOVEit Transfer (Admin Settings module). This issue affects MOVEit Transfer: before 2025.0.7, from…

Fix: 2025.0.7 / 2025.1.3+
Fix from $1,950 2026-07-08
Moveit Transfer HIGH 7.5
CVE-2026-8651

Limited authentication bypass by spoofing vulnerability in Progress MOVEit Transfer (HTTPS module). This issue affects MOVEit Transfer: before 2025.…

Fix: 2025.0.7 / 2025.1.3+
Fix from $1,950 2026-07-08
Moveit Transfer HIGH 7.5
CVE-2026-10699

Missing release of memory after effective lifetime vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVEit Tra…

Fix: 2025.0.8 / 2025.1.4+
Fix from $1,950 2026-07-08
Moveit Transfer HIGH 7.2
CVE-2026-10698

Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affec…

Fix: 2025.0.8 / 2025.1.4+
Fix from $1,950 2026-07-08
Moveit Transfer MEDIUM 5.4
CVE-2026-11903

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer (Ad Hoc module). This…

Fix: 2025.0.8 / 2025.1.4+
Fix from $1,600 2026-07-08