NuGet package
system.security.cryptography.xml
pkg:nuget/system.security.cryptography.xml
Vulnerabilities (5)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-33116 | Hig | 7.5 | >= 10.0.0, < 10.0.6 | 10.0.6 | Apr 14, 2026 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network. | |
| CVE-2026-26171 | Hig | 7.5 | >= 10.0.0, < 10.0.6 | 10.0.6 | Apr 14, 2026 | Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network. | |
| CVE-2022-34716 | — | < 4.7.1 | 4.7.1 | Aug 9, 2022 | .NET Spoofing Vulnerability | ||
| CVE-2018-0765 | — | < 4.4.2 | 4.4.2 | May 9, 2018 | A denial of service vulnerability exists when .NET and .NET Core improperly process XML documents, aka ".NET and .NET Core Denial of Service Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework 4.7.1, Microsoft .NET Fra | ||
| CVE-2018-0764 | — | < 4.4.2 | 4.4.2 | Jan 10, 2018 | Microsoft .NET Framework 1.1, 2.0, 3.0, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 5.7 and .NET Core 1.0. 1.1 and 2.0 allow a denial of service vulnerability due to the way XML documents are processed, aka ".NET and .NET Core Denial Of Service Vulnerability". This CV |
- affected >= 10.0.0, < 10.0.6fixed 10.0.6
Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.
- affected >= 10.0.0, < 10.0.6fixed 10.0.6
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
- CVE-2022-34716Aug 9, 2022affected < 4.7.1fixed 4.7.1
.NET Spoofing Vulnerability
- CVE-2018-0765May 9, 2018affected < 4.4.2fixed 4.4.2
A denial of service vulnerability exists when .NET and .NET Core improperly process XML documents, aka ".NET and .NET Core Denial of Service Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework 4.7.1, Microsoft .NET Fra
- CVE-2018-0764Jan 10, 2018affected < 4.4.2fixed 4.4.2
Microsoft .NET Framework 1.1, 2.0, 3.0, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 5.7 and .NET Core 1.0. 1.1 and 2.0 allow a denial of service vulnerability due to the way XML documents are processed, aka ".NET and .NET Core Denial Of Service Vulnerability". This CV