CVE-2026-47300
- EPSS 0.53%
- Veröffentlicht 14.07.2026 19:17:08
- Zuletzt bearbeitet 22.07.2026 21:17:15
Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
CVE-2026-47302
- EPSS 1.03%
- Veröffentlicht 14.07.2026 19:17:08
- Zuletzt bearbeitet 24.07.2026 13:40:00
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-47303
- EPSS 0.74%
- Veröffentlicht 14.07.2026 19:17:08
- Zuletzt bearbeitet 22.07.2026 21:17:15
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
CVE-2026-47304
- EPSS 0.22%
- Veröffentlicht 14.07.2026 19:17:08
- Zuletzt bearbeitet 24.07.2026 13:39:57
Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-47305
- EPSS 0.34%
- Veröffentlicht 14.07.2026 19:17:08
- Zuletzt bearbeitet 16.07.2026 15:27:58
Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.
CVE-2026-32175
- EPSS 0.71%
- Veröffentlicht 12.05.2026 16:59:01
- Zuletzt bearbeitet 13.05.2026 15:34:52
A tampering vulnerability exists when .NET Core improperly handles specially crafted files. An attacker who successfully exploited this vulnerability could write arbitrary files and directories to certain locations on a vulnerable system. However, an...
CVE-2026-32177
- EPSS 0.55%
- Veröffentlicht 12.05.2026 16:58:15
- Zuletzt bearbeitet 15.07.2026 02:19:53
Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
CVE-2026-32203
- EPSS 1.9%
- Veröffentlicht 14.04.2026 16:58:38
- Zuletzt bearbeitet 15.07.2026 02:19:53
Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.
CVE-2026-32178
- EPSS 2.28%
- Veröffentlicht 14.04.2026 16:57:31
- Zuletzt bearbeitet 15.07.2026 02:19:53
Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-21256
- EPSS 1.1%
- Veröffentlicht 10.02.2026 18:16:27
- Zuletzt bearbeitet 11.02.2026 21:37:01
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code over a network.