Completed
Last Updated: 05 Aug 2025 11:10 by ADMIN
Carlos Andres
Created on: 04 Aug 2025 21:09
Category: UI for ASP.NET AJAX
Type: Feature Request
1
Telerik_UI_for_ASP.NET_AJAX_2020_1_114_Dev_hotfix.zip archive File Download - CVE-2019-18935 vulnerability
I am reaching out in regards of an update we need to resolve a vulnerability in our system. I am not aware if my company has a license already but I was informed that we could get the hotfix by opening a ticket. Please let me know if there is another method to get the hotfix.

Contact email: carlos.diaz@cenace.gob.mx
1 comment
ADMIN
Rumen
Posted on: 05 Aug 2025 11:10

Hi Carlos,

Thank you for reaching out.

Please note that this is a public post, and for security reasons, we cannot provide here the installation files, including the Telerik_UI_for_ASP.NET_AJAX_2020_1_114_Dev_hotfix.zip archive.

To obtain the hotfix, you will need to open a private support ticket through your Telerik account. Opening a support ticket requires a valid Telerik UI for ASP.NET AJAX or DevCraft license (either paid or trial).

    While you are currently addressing CVE-2019-18935, I want to highlight a new high-severity vulnerability - CVE-2025-3600, disclosed in May 2025, which affects all Telerik UI for ASP.NET AJAX versions from 2011.2.712 up to and including 2025.1.218 (Q1 SP1). This is a high-severity unsafe reflection vulnerability that impacts the AJAX suite.

    To fully mitigate this newer threat, we strongly recommend upgrading to 2025.1.416 (Q1 SP2) or, preferably, to the latest version 2025.2.609.

    Version 2025.2.609 includes fixes for all known vulnerabilities, along with significant improvements in security, performance, browser compatibility, and access to the newest features and controls. Please note that this is a paid version, and upgrading beyond 2020.1.114 would require an active license.

    Further information about CVE-2025-3600 is available here:
    CVE-2025-3600 Knowledge Base

    Let us know if you have any further questions.

    Regards,
    Rumen
    Progress Telerik

    Stay tuned by visiting our public roadmap and feedback portal pages! Or perhaps, if you are new to our Telerik family, check out our getting started resources