VulnSea

visual_studio_2026_version_18.7 vulnerabilities

CVEs whose affected-version data names the visual_studio_2026_version_18.7 package (nuget). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

16 CVEsRSS

CVE-2026-50649High· 7.8
2mo ago

.NET Remote Code Execution Vulnerability

Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.

TwilightMicrosoft · .NET 8.0EPSS 0.94%via CVEORG
CVE-2026-50646High· 7.8
2mo ago

.NET Framework Remote Code Execution Vulnerability

Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.

TwilightMicrosoft · .NET 8.0EPSS 0.97%via CVEORG
CVE-2026-47305High· 7.8
2mo ago

Visual Studio Remote Code Execution Vulnerability

Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.

TwilightMicrosoft · Microsoft Visual Studio 2022 version 17.12EPSS 0.47%via CVEORG
CVE-2026-50650High· 7.8
2mo ago

.NET Framework Elevation of Privilege Vulnerability

Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.

TwilightMicrosoft · .NET 8.0EPSS 0.30%via CVEORG
CVE-2026-50527High· 7.5
2mo ago

.NET Framework Denial of Service Vulnerability

Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.84%via CVEORG
CVE-2026-47303High· 8.8
2mo ago

ASP.NET Core Elevation of Privilege Vulnerability

Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.74%via CVEORG
CVE-2026-47300High· 8.8
2mo ago

ASP.NET Core Elevation of Privilege Vulnerability

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.53%via CVEORG
CVE-2026-50526High· 7.0
2mo ago

.NET Tampering Vulnerability

Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.

TwilightMicrosoft · .NET 10.0EPSS 0.23%via CVEORG
CVE-2026-47304High· 8.1
2mo ago

.NET Security Feature Bypass Vulnerability

Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.22%via CVEORG
CVE-2026-50524High· 7.5
2mo ago

.NET Framework Denial of Service Vulnerability

Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.63%via CVEORG
CVE-2026-50648High· 7.5
2mo ago

.NET Framework Denial of Service Vulnerability

Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.84%via CVEORG
CVE-2026-50528High· 8.2
2mo ago

.NET Security Feature Bypass Vulnerability

Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.56%via CVEORG
CVE-2026-50525High· 7.5
2mo ago

.NET Denial of Service Vulnerability

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.60%via CVEORG
CVE-2026-50659Medium· 6.5
2mo ago

.NET Spoofing Vulnerability

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · .NET 10.0EPSS 0.55%via CVEORG
CVE-2026-50651High· 7.5
2mo ago

.NET Denial of Service Vulnerability

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.84%via CVEORG
CVE-2026-47302High· 7.5
2mo ago

.NET Denial of Service Vulnerability

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

TwilightMicrosoft · .NET 10.0EPSS 1.0%via CVEORG
visual_studio_2026_version_18.7 vulnerabilities (CVEs) · VulnSea