VYPR

Bitnami package

dotnet

pkg:bitnami/dotnet

Vulnerabilities (121)

  • CVE-2026-26131HigMar 10, 2026
    affected >= 10.0.0, < 10.0.4fixed 10.0.4

    Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.

  • CVE-2026-26127HigMar 10, 2026
    affected >= 9.0.0, < 9.0.14fixed 9.0.14

    Out-of-bounds read in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-21218HigFeb 10, 2026
    affected >= 8.0.0, < 8.0.24fixed 8.0.24

    Improper handling of missing special element in .NET allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2025-55248MedOct 14, 2025
    affected >= 8.0.0, < 8.0.21fixed 8.0.21

    Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker to disclose information over a network.

  • CVE-2025-55247HigOct 14, 2025
    affected >= 8.0.0, < 8.0.21fixed 8.0.21

    Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.

  • CVE-2025-30399HigJun 13, 2025
    affected >= 8.0.0, < 8.0.18fixed 8.0.18

    Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.

  • CVE-2020-36846CriMay 30, 2025
    affected >= 5.0.0, < 5.0.15fixed 5.0.15

    A buffer overflow, as described in CVE-2020-8927, exists in the embedded Brotli library.  Versions of IO::Compress::Brotli prior to 0.007 included a version of the brotli library prior to version 1.0.8, where an attacker controlling the input length of a "one-shot" decompression

  • CVE-2025-26646HigMay 13, 2025
    affected >= 8.0.0, < 8.0.16fixed 8.0.16

    External control of file name or path in .NET, Visual Studio, and Build Tools for Visual Studio allows an authorized attacker to perform spoofing over a network.

  • CVE-2025-21176HigJan 14, 2025
    affected >= 8.0.0, < 8.0.1fixed 8.0.1

    .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability

  • CVE-2025-21173HigJan 14, 2025
    affected >= 8.0.0, < 8.0.1fixed 8.0.1

    .NET Elevation of Privilege Vulnerability

  • CVE-2025-21172HigJan 14, 2025
    affected >= 8.0.0, < 8.0.1fixed 8.0.1

    .NET and Visual Studio Remote Code Execution Vulnerability

  • CVE-2025-21171HigJan 14, 2025
    affected >= 9.0.0, < 9.0.1fixed 9.0.1

    .NET Remote Code Execution Vulnerability

  • CVE-2024-43499HigNov 12, 2024
    affected >= 9.0.0, < 9.0.1fixed 9.0.1

    .NET and Visual Studio Denial of Service Vulnerability

  • CVE-2024-43498CriNov 12, 2024
    affected >= 9.0.0, < 9.0.1fixed 9.0.1

    .NET and Visual Studio Remote Code Execution Vulnerability

  • CVE-2024-43485HigOct 8, 2024
    affected >= 6.0.0, < 6.0.35fixed 6.0.35

    .NET and Visual Studio Denial of Service Vulnerability

  • CVE-2024-43484HigOct 8, 2024
    affected >= 6.0.0, < 6.0.35fixed 6.0.35

    .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

  • CVE-2024-43483HigOct 8, 2024
    affected >= 6.0.0, < 6.0.35fixed 6.0.35

    .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

  • CVE-2024-38229HigOct 8, 2024
    affected >= 8.0.0, < 8.0.10fixed 8.0.10

    .NET and Visual Studio Remote Code Execution Vulnerability

  • CVE-2024-38168HigAug 13, 2024
    affected >= 8.0.0, < 8.0.8fixed 8.0.8

    .NET and Visual Studio Denial of Service Vulnerability

  • CVE-2024-38167MedAug 13, 2024
    affected >= 8.0.0, < 8.0.8fixed 8.0.8

    .NET and Visual Studio Information Disclosure Vulnerability

Page 3 of 7