What is CVE-2026-14932?
CVE-2026-14932 is an unauthenticated file read and deletion vulnerability in the ChartImage.axd handler of the obsolete RadChart component in Progress Telerik UI for AJAX. It affects image files within the application directory. Upgrade to v2026.2.708 or later and disable the RadChart component.
Azərbaycanca: CVE-2026-14932, Progress Telerik UI for AJAX-in köhnəlmiş RadChart komponentindəki ChartImage.axd handler-də autentifikasiya olmadan fayl oxuma və silmə zəifliyidir. Bu, tətbiq kataloqundakı şəkil fayllarına təsir edir. dərhal v2026.2.708 və ya daha yuxarı versiyaya yenilənməli və RadChart komponenti söndürülməlidir.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: Progress
FAQ2
Which Progress Telerik UI component is affected by CVE-2026-14932?
This vulnerability exists in the ChartImage.axd handler within the obsolete RadChart component of Progress Telerik UI for AJAX.
What is the primary mitigation recommended for CVE-2026-14932?
Immediately upgrade to version v2026.2.708 or later and disable the RadChart component.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.