CVE-2026-32203
- EPSS 1.9%
- Veröffentlicht 14.04.2026 16:58:38
- Zuletzt bearbeitet 15.07.2026 02:19:53
Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.
CVE-2026-26171
- EPSS 1.75%
- Veröffentlicht 14.04.2026 16:58:37
- Zuletzt bearbeitet 15.07.2026 02:19:00
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-33116
- EPSS 2.14%
- Veröffentlicht 14.04.2026 16:57:47
- Zuletzt bearbeitet 25.07.2026 11:10:00
Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.
CVE-2026-32178
- EPSS 2.28%
- Veröffentlicht 14.04.2026 16:57:31
- Zuletzt bearbeitet 15.07.2026 02:19:53
Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-25667
- EPSS 3%
- Veröffentlicht 19.03.2026 00:00:00
- Zuletzt bearbeitet 22.04.2026 17:16:34
ASP.NET Core Kestrel in Microsoft .NET 8.0 before 8.0.22 and .NET 9.0 before 9.0.11 allows a remote attacker to cause excessive CPU consumption by sending a crafted QUIC packet, because of an incorrect exit condition for HTTP/3 Encoder/Decoder stream...
CVE-2026-26127
- EPSS 2.05%
- Veröffentlicht 10.03.2026 17:05:10
- Zuletzt bearbeitet 01.04.2026 20:22:46
Out-of-bounds read in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-26131
- EPSS 0.36%
- Veröffentlicht 10.03.2026 17:05:09
- Zuletzt bearbeitet 01.04.2026 20:23:21
Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.
CVE-2026-21218
- EPSS 1.02%
- Veröffentlicht 10.02.2026 18:16:22
- Zuletzt bearbeitet 12.02.2026 17:35:25
Improper handling of missing special element in .NET allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-55248
- EPSS 0.67%
- Veröffentlicht 14.10.2025 17:00:59
- Zuletzt bearbeitet 23.10.2025 15:01:44
Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker to disclose information over a network.
CVE-2025-55247
- EPSS 0.56%
- Veröffentlicht 14.10.2025 17:00:09
- Zuletzt bearbeitet 23.10.2025 15:08:42
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.