Search
Search Results (389 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2021-34485 | 2 Microsoft, Redhat | 7 .net, .net Core, Powershell Core and 4 more | 2026-10-07 | 5 Medium |
| .NET Core and Visual Studio Information Disclosure Vulnerability | ||||
| CVE-2021-31957 | 3 Fedoraproject, Microsoft, Redhat | 6 Fedora, .net, .net Core and 3 more | 2026-10-07 | 5.9 Medium |
| ASP.NET Core Denial of Service Vulnerability | ||||
| CVE-2021-31204 | 3 Fedoraproject, Microsoft, Redhat | 6 Fedora, .net, .net Core and 3 more | 2026-10-07 | 7.3 High |
| .NET and Visual Studio Elevation of Privilege Vulnerability | ||||
| CVE-2021-24112 | 1 Microsoft | 4 .net, .net Core, Mono and 1 more | 2026-10-07 | 8.1 High |
| .NET Core Remote Code Execution Vulnerability | ||||
| CVE-2026-58649 | 3 Apple, Linux, Microsoft | 9 Macos, Linux Kernel, .net and 6 more | 2026-10-07 | 6.5 Medium |
| Origin validation error in .NET allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-69304 | 1 Microsoft | 7 .net, Asp.net Core, Microsoft Visual Studio 2022 and 4 more | 2026-09-30 | 5.9 Medium |
| Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network. | ||||
| CVE-2026-69805 | 1 Microsoft | 4 Diagnostics Runtime, Microsoft.diagnostics.runtime, Visual Studio 2022 and 1 more | 2026-09-29 | 7.5 High |
| External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-69806 | 2 Linux, Microsoft | 4 Linux Kernel, .net, Visual Studio 2022 and 1 more | 2026-09-29 | 7 High |
| Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally. | ||||
| CVE-2026-69439 | 1 Microsoft | 6 .net, Microsoft Visual Studio 2022, Microsoft Visual Studio 2026 and 3 more | 2026-09-29 | 8.8 High |
| Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-81380 | 1 Microsoft | 1 Visual Studio Code | 2026-09-23 | 5.3 Medium |
| Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-81381 | 1 Microsoft | 1 Visual Studio Code | 2026-09-15 | 6.5 Medium |
| Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-78462 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 8.8 High |
| Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-71328 | 1 Microsoft | 4 .net, Visual Studio 2022, Visual Studio 2026 and 1 more | 2026-09-11 | 8.8 High |
| Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-81379 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 8.2 High |
| Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81378 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 8.2 High |
| Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81377 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 6.5 Medium |
| Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tampering over a network. | ||||
| CVE-2026-81376 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 9.6 Critical |
| Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81357 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 8.2 High |
| Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81356 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 8.2 High |
| Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-78461 | 1 Microsoft | 1 Visual Studio Code | 2026-09-11 | 7.4 High |
| Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||