AspNetCore.OData vulnerabilities
CVEs whose affected-version data names the AspNetCore.OData package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-57099High· 7.5Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
▾ TwilightMicrosoft · AspNetCore.ODataEPSS 0.82%via NVD
CVE-2026-50506High· 7.5OData for ASP.NET and ASP.NET Core Denial of Service Vulnerability
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
▾ TwilightMicrosoft · AspNet.ODataEPSS 1.2%via CVEORG