Telerik UI for ASP.NET AJAX vulnerabilities: known CVEs & security history
Progress · Actively exploited · 14 tracked CVEs · 1 actively exploited · updated September 2026 · what is a CVE? →
This is the full list of known vulnerabilities (CVEs) across all Telerik UI for ASP.NET AJAX release lines — 14 in total, with 1 actively exploited in the wild. A CVE here doesn't mean your version is affected — check Telerik UI for ASP.NET AJAX's current status and the safe version to run.
Known Telerik UI for ASP.NET AJAX CVEs
Actively-exploited and most-severe first. Open any CVE for full details.
| CVE | Severity | CVSS | EPSS | Year |
|---|---|---|---|---|
| CVE-2017-11357⚡ exploited | critical | 9.8 | 76% | 2017 |
| CVE-2026-13190 | high | 8.1 | 0% | 2026 |
| CVE-2026-13187 | high | 8.1 | 0% | 2026 |
| CVE-2026-13186 | high | 8.1 | 0% | 2026 |
| CVE-2026-13185 | high | 8.1 | 0% | 2026 |
| CVE-2026-13181 | high | 8.1 | 0% | 2026 |
| CVE-2026-13189 | high | 7.5 | 0% | 2026 |
| CVE-2026-13184 | high | 7.5 | 0% | 2026 |
| CVE-2026-13183 | high | 7.5 | 0% | 2026 |
| CVE-2026-13182 | high | 7.5 | 0% | 2026 |
| CVE-2026-14932 | medium | 6.5 | 0% | 2026 |
| CVE-2026-13192 | medium | 6.5 | 0% | 2026 |
| CVE-2026-13188 | medium | 5.9 | 0% | 2026 |
| CVE-2026-14865 | medium | 5.3 | 0% | 2026 |
Is my Telerik UI for ASP.NET AJAX version affected?
The list above spans every release. To know whether your version is affected — and the minimum safe version to upgrade to — check it directly.
Check your Telerik UI for ASP.NET AJAX version → · Monitor Telerik UI for ASP.NET AJAX for new CVEs →
Telerik UI for ASP.NET AJAX vulnerabilities — frequently asked
How many known vulnerabilities does Telerik UI for ASP.NET AJAX have?
IsItPatched tracks 14 CVEs for Telerik UI for ASP.NET AJAX, 1 of which is actively exploited (CISA KEV). 1 is critical-severity and 9 high-severity. These span every release line — what matters is whether the version you run is affected.
Does Telerik UI for ASP.NET AJAX have any actively-exploited vulnerabilities?
Yes — 1 Telerik UI for ASP.NET AJAX CVE is in CISA's Known Exploited Vulnerabilities catalog, meaning it is confirmed exploited in the wild (1 linked to ransomware). Patch it as a priority.
What is the most severe Telerik UI for ASP.NET AJAX vulnerability?
Among tracked issues, CVE-2017-11357 (CRITICAL, CVSS 9.8), which is actively exploited, ranks highest — a Unrestricted file upload weakness.
Is Telerik UI for ASP.NET AJAX safe to use?
It depends on the version. The latest supported Telerik UI for ASP.NET AJAX release clears the known issues; older versions may still be affected. Check the exact version you run for a verdict.
CVE data aggregated from NVD, CISA KEV and EPSS (FIRST.org). Related: Telerik UI for ASP.NET AJAX security status · Telerik UI for ASP.NET AJAX end-of-life · actively-exploited CVEs. Always verify against Progress's advisories — see our disclaimer.