VYPR

apk package

wolfi/dotnet-bootstrap-8

pkg:apk/wolfi/dotnet-bootstrap-8

Vulnerabilities (22)

  • CVE-2026-50659MedJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-50651HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50648HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50528HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-50527HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50525HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50524HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-47304HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-47302HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-57108HigJul 14, 2026
    affected < 8.0.130-r0fixed 8.0.130-r0

    Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny service over a network.

  • CVE-2026-45591HigJun 9, 2026
    affected < 8.0.129-r0fixed 8.0.129-r0

    Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacker to deny service over a network.

  • CVE-2026-45491MedJun 9, 2026
    affected < 8.0.129-r0fixed 8.0.129-r0

    Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.

  • CVE-2026-42899HigMay 12, 2026
    affected < 8.0.127-r0fixed 8.0.127-r0

    Loop with unreachable exit condition ('infinite loop') in ASP.NET Core allows an unauthorized attacker to deny service over a network.

  • CVE-2026-33116HigApr 14, 2026
    affected < 8.0.127-r0fixed 8.0.127-r0

    Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.

  • CVE-2026-32178HigApr 14, 2026
    affected < 8.0.127-r0fixed 8.0.127-r0

    Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2026-26171HigApr 14, 2026
    affected < 8.0.127-r0fixed 8.0.127-r0

    Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-26130HigMar 10, 2026
    affected < 8.0.126-r0fixed 8.0.126-r0

    Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

  • CVE-2025-55315CriOct 14, 2025
    affected < 8.0.122-r0fixed 8.0.122-r0

    Inconsistent interpretation of http requests ('http request/response smuggling') in ASP.NET Core allows an authorized attacker to bypass a security feature over a network.

  • CVE-2025-55248MedOct 14, 2025
    affected < 8.0.122-r0fixed 8.0.122-r0

    Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker to disclose information over a network.

  • CVE-2025-30399HigJun 13, 2025
    affected < 8.0.18-r0fixed 8.0.18-r0

    Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.

Page 1 of 2