---
id: CVE-2021-34485
title: .NET Core and Visual Studio Information Disclosure Vulnerability
summary: .NET Core and Visual Studio Information Disclosure Vulnerability
severity: medium
cvss: 5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N'
cwe:
  - CWE-200
vendor: microsoft
product: .net
affected:
  - '.net >= 5.0, <= 5.0.8'
  - '.net_core >= 2.1, <= 2.1.28'
  - '.net_core >= 3.1, <= 3.1.17'
  - 'powershell_core >= 7.0, < 7.0.7'
  - 'powershell_core >= 7.1, < 7.1.4'
  - 'visual_studio_2017 >= 15.0, <= 15.9'
  - 'visual_studio_2019 >= 16.0, <= 16.10'
patched:
  - powershell_core 7.1.4
published: '2021-08-12'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T17:16:42.997'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-34485'
references:
  - url: 'https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34485'
    label: secure@microsoft.com
  - url: >-
      https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-34485
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-10-07T16:08:14.030039Z'
epss: 0.01468
epssPercentile: 0.72918
ingestedAt: '2026-10-07T16:38:22.258Z'
---

## Overview

.NET Core and Visual Studio Information Disclosure Vulnerability

## Affected

- `.net >= 5.0, <= 5.0.8`
- `.net_core >= 2.1, <= 2.1.28`
- `.net_core >= 3.1, <= 3.1.17`
- `powershell_core >= 7.0, < 7.0.7`
- `powershell_core >= 7.1, < 7.1.4`
- `visual_studio_2017 >= 15.0, <= 15.9`
- `visual_studio_2019 >= 16.0, <= 16.10`

## Remediation

Upgrade past the affected range:

- `powershell_core 7.1.4`
