ctipilot.ch

Progress Telerik UI for ASP.NET AJAX — RadAsyncUpload resource exhaustion DoS (CVSS 7.5)

cve · CVE-2026-6022 SINGLE-SOURCE-NATIONAL-CERT

Coverage timeline
2
first 2026-05-07 → last 2026-05-10
Briefs
2
2 distinct
Sources cited
34
27 hosts
Sections touched
2
active_vulns, weekly_summary
Co-occurring entities
0
no co-occurrence

Story timeline

  1. 2026-05-10CTI Weekly Summary — 2026-W19 (May 04 – May 10, 2026)
    weekly_summaryConsolidated in weekly summary for week 2026-W19
  2. 2026-05-07CTI Daily Brief — 2026-05-07
    active_vulnsFirst coverage. Disk exhaustion via chunked upload bypassing file-size limits; CERT-FR CERTFR-2026-AVI-0542; fixed in 2026.1.421.

Where this entity is cited

  • active_vulns1
  • weekly_summary1

Source distribution

  • attack.mitre.org4 (12%)
  • bleepingcomputer.com2 (6%)
  • cert.ssi.gouv.fr2 (6%)
  • nvd.nist.gov2 (6%)
  • wid.cert-bund.de2 (6%)
  • blog.talosintelligence.com1 (3%)
  • cisa.gov1 (3%)
  • dragos.com1 (3%)
  • other19 (56%)

External references

NVD · cve.org · CISA KEV

All cited sources (34)

Items in briefs about Progress Telerik UI for ASP.NET AJAX — RadAsyncUpload resource exhaustion DoS (CVSS 7.5)

No parsed item heading or body matches this entity yet. Items match by exact CVE id (for CVE entities), by lead-segment substring of the title in the item heading or body, or by a distinctive anchor token from the title appearing in the item heading. Coverage that lives inside a broader section (no per-item heading) is captured by the Story timeline above.