CVE-2026-13188: DialogHandler Parameters Tampering Vulnerability in Telerik UI for ASP.NET AJAX
In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-side behavior and enabling chained exploitation.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Telerik UI for ASP.NET AJAX (DialogHandler)to a version that resolves this vulnerability.Fixed in v2026.2.708
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13188?
CVE-2026-13188 has a medium severity rating of 5.9.
How do I fix CVE-2026-13188?
To mitigate CVE-2026-13188, upgrade to Telerik UI for AJAX version 2026.2.708 or later.
What is the risk associated with CVE-2026-13188?
CVE-2026-13188 has a risk score of 35, indicating potential vulnerabilities in the system.
What are the potential effects of CVE-2026-13188?
CVE-2026-13188 may allow tampering with DialogHandler request parameters, leading to unexpected server-side behavior.
Which software is affected by CVE-2026-13188?
CVE-2026-13188 affects Telerik UI for ASP.NET AJAX versions prior to 2026.2.708.