VulnSea

.net_9.0 vulnerabilities

CVEs whose affected-version data names the .net_9.0 package (nuget). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

37 CVEsRSS

CVE-2026-47302High· 7.5
2mo ago

.NET Denial of Service Vulnerability

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 1.2%via CVEORG
CVE-2026-45490High· 7.8
3mo ago

.NET SDK Elevation of Privilege Vulnerability

Improper authorization in .NET allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.42%via CVEORG
CVE-2026-45591High· 7.5
3mo ago

ASP.NET Core Denial of Service Vulnerability

Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.4%via CVEORG
CVE-2026-45491Medium· 6.2
3mo ago

.NET Tampering Vulnerability

Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.

▾ SunlitMicrosoft · .NET 10.0EPSS 0.37%via CVEORG
CVE-2026-32178High· 7.5
5mo ago

.NET Spoofing Vulnerability

Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.1%via CVEORG
CVE-2026-26171High· 7.5
5mo ago

.NET Denial of Service Vulnerability

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.3%via CVEORG
CVE-2026-32203High· 7.5
5mo ago

.NET and Visual Studio Denial of Service Vulnerability

Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.4%via CVEORG
.net_9.0 vulnerabilities (CVEs) — page 2 · VulnSea