In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack is possible using object injection via insecure expression evaluation.
https://security.netapp.com/advisory/ntap-20250425-0004/
https://docs.telerik.com/reporting/knowledge-base/insecure-expression-evaluation-cve-2024-8048