Microsoft Net vulnerabilities
100 known vulnerabilities affecting microsoft/net.
Total CVEs
100
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
3
Severity breakdown
CRITICAL4HIGH77MEDIUM19
Vulnerabilities
Page 5 of 5
CVE-2022-24512P3MEDIUMCVSS 6.3v5.0v6.0.02022-03-09
CVE-2022-24512 [MEDIUM] CWE-94 CVE-2022-24512: .NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
nvd
CVE-2021-26423P3HIGHCVSS 7.5≥ 5.0, ≤ 5.0.82021-08-12
CVE-2021-26423 [HIGH] CVE-2021-26423: .NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
nvd
CVE-2022-24464P3HIGHCVSS 7.5≥ 5.0, ≤ 5.0.14≥ 6.0.0, ≤ 6.0.22022-03-09
CVE-2022-24464 [HIGH] CWE-400 CVE-2022-24464: .NET and Visual Studio Denial of Service Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
nvd
CVE-2023-29331P3HIGHCVSS 7.5v6.0.0v7.0.02023-06-14
CVE-2023-29331 [HIGH] CWE-400 CVE-2023-29331: .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
nvd
CVE-2023-38178P3HIGHCVSS 7.5v6.0.02023-08-08
CVE-2023-38178 [HIGH] CWE-400 CVE-2023-38178: .NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
nvd
CVE-2023-33135P3HIGHCVSS 7.3≥ 6.0.0, < 6.0.18≥ 7.0.0, < 7.0.72023-06-14
CVE-2023-33135 [HIGH] CVE-2023-33135: .NET and Visual Studio Elevation of Privilege Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
nvd
CVE-2026-62897P3HIGHCVSS 7.0≥ 8.0.0, < 8.0.30≥ 9.0.0, < 9.0.19+1 more2026-08-11
CVE-2026-62897 [HIGH] CWE-190 CVE-2026-62897: Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code loc
Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.
nvd
CVE-2021-41355P4MEDIUMCVSS 5.7v5.02021-10-13
CVE-2021-41355 [MEDIUM] CVE-2021-41355: .NET Core and Visual Studio Information Disclosure Vulnerability
.NET Core and Visual Studio Information Disclosure Vulnerability
nvd
CVE-2026-62900P3MEDIUMCVSS 5.9≥ 8.0.0, < 8.0.30≥ 9.0.0, < 9.0.19+1 more2026-08-11
CVE-2026-62900 [MEDIUM] CWE-212 CVE-2026-62900: Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized
Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2025-55248P4MEDIUMCVSS 5.7≥ 8.0.0, < 8.0.21≥ 9.0.0, < 9.0.102025-10-14
CVE-2025-55248 [MEDIUM] CWE-326 CVE-2025-55248: Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker
Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker to disclose information over a network.
nvd
CVE-2024-38167P4MEDIUMCVSS 6.5≥ 8.0.0, < 8.0.82024-08-13
CVE-2024-38167 [MEDIUM] CWE-319 CVE-2024-38167: .NET and Visual Studio Information Disclosure Vulnerability
.NET and Visual Studio Information Disclosure Vulnerability
nvd
CVE-2023-36799P4MEDIUMCVSS 6.5v6.0.0v7.0.02023-09-12
CVE-2023-36799 [MEDIUM] CWE-400 CVE-2023-36799: .NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
nvd
CVE-2024-21319P4MEDIUMCVSS 6.8≥ 6.0.0, < 6.0.26≥ 7.0.0, < 7.0.15+1 more2024-01-09
CVE-2024-21319 [MEDIUM] CWE-20 CVE-2024-21319: Microsoft Identity Denial of service vulnerability
Microsoft Identity Denial of service vulnerability
nvd
CVE-2023-32032P4MEDIUMCVSS 6.5≥ 7.0.0, < 7.0.72023-06-14
CVE-2023-32032 [MEDIUM] CWE-20 CVE-2023-32032: .NET and Visual Studio Elevation of Privilege Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
nvd
CVE-2026-45491P4MEDIUMCVSS 5.5≥ 8.0.0, < 8.0.28≥ 9.0.0, < 9.0.17+1 more2026-06-09
CVE-2026-45491 [MEDIUM] CWE-59 CVE-2026-45491: Improper link resolution before file access ('link following') in .NET allows an unauthorized attack
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
nvd
CVE-2021-1721P4MEDIUMCVSS 6.5≥ 5.0, ≤ 5.0.22021-02-25
CVE-2021-1721 [MEDIUM] CVE-2021-1721: .NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
nvd
CVE-2026-50526P4MEDIUMCVSS 5.5≥ 8.0.0, < 8.0.29≥ 9.0.0, < 9.0.18+1 more2026-07-14
CVE-2026-50526 [MEDIUM] CWE-59 CVE-2026-50526: Improper link resolution before file access ('link following') in .NET allows an authorized attacker
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
nvd
CVE-2022-30184P4MEDIUMCVSS 5.5v6.0.02022-06-15
CVE-2022-30184 [MEDIUM] CWE-200 CVE-2022-30184: .NET and Visual Studio Information Disclosure Vulnerability
.NET and Visual Studio Information Disclosure Vulnerability
nvd
CVE-2023-36558P4MEDIUMCVSS 5.5≥ 6.0.0, < 6.0.25≥ 7.0.0, < 7.0.14+1 more2023-11-14
CVE-2023-36558 [MEDIUM] CVE-2023-36558: ASP.NET Core Security Feature Bypass Vulnerability
ASP.NET Core Security Feature Bypass Vulnerability
nvd
CVE-2021-34485P4MEDIUMCVSS 5.5≥ 5.0, ≤ 5.0.82021-08-12
CVE-2021-34485 [MEDIUM] CVE-2021-34485: .NET Core and Visual Studio Information Disclosure Vulnerability
.NET Core and Visual Studio Information Disclosure Vulnerability
nvd
← Previous5 / 5