CyberRota
Back to database

CVE-2026-6023

HIGH · CVSS 8.1 EPSS 0.07% Public Exploit

Source: NVD + CISA KEV + EPSS · Published: 2026-04-22 · Last synced: 2026-05-18

CyberRota Analysis

Uzaktan istismar edilebilir olabilir.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-6023
Severity
HIGH
CVSS
8.1
EPSS
0.07%

Original NVD Description

In ProgressĀ® TelerikĀ® UI for AJAX versions 2024.4.1114 through 2026.1.421, the RadFilter control is vulnerable to insecure deserialization when restoring filter state if the state is exposed to the client. If an attacker tampers with this state, a server-side remote code execution is possible.