VYPR

Net

by Microsoft

Source repositories

CVEs (124)

  • CVE-2026-62871HigAug 11, 2026
    risk 0.44cvss 7.8epss 0.00

    Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

  • CVE-2026-50650HigJul 14, 2026
    risk 0.44cvss 7.8epss 0.00

    Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.

  • CVE-2026-50649HigJul 14, 2026
    risk 0.44cvss 7.8epss 0.01

    Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.

  • CVE-2026-50646HigJul 14, 2026
    risk 0.44cvss 7.8epss 0.01

    Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.

  • CVE-2024-21319MedJan 9, 2024
    risk 0.44cvss 6.8epss 0.03

    Microsoft Identity Denial of service vulnerability

  • CVE-2022-41032HigOct 11, 2022
    risk 0.44cvss 7.8epss 0.01

    NuGet Client Elevation of Privilege Vulnerability

  • CVE-2023-36799MedSep 12, 2023
    risk 0.43cvss 6.5epss 0.05

    .NET Core and Visual Studio Denial of Service Vulnerability

  • CVE-2021-1721MedFeb 25, 2021
    risk 0.43cvss 6.5epss 0.03

    .NET Core and Visual Studio Denial of Service Vulnerability

  • CVE-2026-62901HigAug 11, 2026
    risk 0.42cvss 7.5epss 0.01

    Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-62898HigAug 11, 2026
    risk 0.42cvss 7.5epss 0.01

    Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-50659MedJul 14, 2026
    risk 0.42cvss 6.5epss 0.01

    Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-42899HigMay 12, 2026
    risk 0.42cvss 7.5epss 0.02

    Loop with unreachable exit condition ('infinite loop') in ASP.NET Core allows an unauthorized attacker to deny service over a network.

  • CVE-2026-33116HigApr 14, 2026
    risk 0.42cvss 7.5epss 0.02

    Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.

  • CVE-2026-32203HigApr 14, 2026
    risk 0.42cvss 7.5epss 0.02

    Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.

  • CVE-2026-32178HigApr 14, 2026
    risk 0.42cvss 7.5epss 0.02

    Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2026-26171HigApr 14, 2026
    risk 0.42cvss 7.5epss 0.02

    Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-25667HigMar 19, 2026
    risk 0.42cvss 7.5epss 0.03

    ASP.NET Core Kestrel in Microsoft .NET 8.0 before 8.0.22 and .NET 9.0 before 9.0.11 allows a remote attacker to cause excessive CPU consumption by sending a crafted QUIC packet, because of an incorrect exit condition for HTTP/3 Encoder/Decoder stream processing.

  • CVE-2026-21218HigFeb 10, 2026
    risk 0.42cvss 7.5epss 0.01

    Improper handling of missing special element in .NET allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2024-38167MedAug 13, 2024
    risk 0.42cvss 6.5epss 0.01

    .NET and Visual Studio Information Disclosure Vulnerability

  • CVE-2024-21392HigMar 12, 2024
    risk 0.42cvss 7.5epss 0.03

    .NET and Visual Studio Denial of Service Vulnerability

Page 5 of 7