Tagged “nuget”
CVEs tagged nuget, newest first.
159 CVEsRSS
GHSA-h58x-r7f7-rh84Low· 3.7ImageMagick: Memory Leak in ICON decoder when allocation fails
ImageMagick: Memory Leak in ICON decoder when allocation fails
GHSA-h5r4-w88w-7ccrLow· 2.5ImageMagick: Memory Leak in TIFF encoder when invalid tiff:tile-geometry is specified
ImageMagick: Memory Leak in TIFF encoder when invalid tiff:tile-geometry is specified
CVE-2026-55510Medium· 5.5ImageMagick: Use-After-Free in crafted 8BIM when identifying an image
ImageMagick: Use-After-Free in crafted 8BIM when identifying an image
CVE-2026-55594Medium· 5.3ImageMagick: Stack Overflow in MVG decoder due to missing depth check.
ImageMagick: Stack Overflow in MVG decoder due to missing depth check.
CVE-2026-55595Medium· 4.7ImageMagick: Infinite Loop in connected-components when providing invalid arguments
ImageMagick: Infinite Loop in connected-components when providing invalid arguments
CVE-2026-55597Medium· 5.5ImageMagick: Heap Buffer Over-Write in JP2 encoder when due to incorrect handling of arguments
ImageMagick: Heap Buffer Over-Write in JP2 encoder when due to incorrect handling of arguments
CVE-2026-55628Medium· 6.1ImageMagick: Policy Bypass in concatenate operation due to missing checks
ImageMagick: Policy Bypass in concatenate operation due to missing checks
GHSA-rvhp-75f6-9jqhLow· 3.3ImageMagick: Policy Bypass possible with matrix-backed operations
ImageMagick: Policy Bypass possible with matrix-backed operations
GHSA-56m6-8q75-f2rwMedium· 4.7ImageMagick: Policy Bypass due to an incomplete fix of CVE-2026-49219
ImageMagick: Policy Bypass due to an incomplete fix of CVE-2026-49219
GHSA-hc76-7mpc-qjqhMedium· 5.7ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797
ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797
GHSA-qh5g-q395-cx4jLow· 3.7ImageMagick: Heap-use-after-free via XMP profile could result in a crash
ImageMagick: Heap-use-after-free via XMP profile could result in a crash
GHSA-v3j6-27vc-7pw2Low· 3.3ImageMagick: Policy Bypass in APNG encoder and delegates due to a missing check
ImageMagick: Policy Bypass in APNG encoder and delegates due to a missing check
GHSA-vghg-5jrg-2398Low· 3.3ImageMagick: Policy Bypass in script operation due to missing checks
ImageMagick: Policy Bypass in script operation due to missing checks
GHSA-6jwg-7q3p-5fqmLow· 3.7ImageMagick: Use-After-Free when freetype initialization fails
ImageMagick: Use-After-Free when freetype initialization fails
CVE-2026-53467Medium· 5.3ImageMagick: Information Disclosure in MNG decoder because allocated memory is left unchanged
ImageMagick: Information Disclosure in MNG decoder because allocated memory is left unchanged
CVE-2026-50273High· 7.5dd-trace-dotnet: Improper parsing of W3C baggage headers may lead to DoS
dd-trace-dotnet: Improper parsing of W3C baggage headers may lead to DoS
CVE-2026-50646High· 7.8.NET Framework Remote Code Execution Vulnerability
Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.
CVE-2026-50650High· 7.8.NET Framework Elevation of Privilege Vulnerability
Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.
CVE-2026-50527High· 7.5.NET Framework Denial of Service Vulnerability
Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.
CVE-2026-47303High· 8.8ASP.NET Core Elevation of Privilege Vulnerability
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
CVE-2026-47300High· 8.8ASP.NET Core Elevation of Privilege Vulnerability
Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
CVE-2026-50526High· 7.0.NET Tampering Vulnerability
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
CVE-2026-56170High· 7.5ASP.NET Core Denial of Service Vulnerability
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
CVE-2026-47304High· 8.1.NET Security Feature Bypass Vulnerability
Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-50524High· 7.5.NET Framework Denial of Service Vulnerability
Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.
CVE-2026-50648High· 7.5.NET Framework Denial of Service Vulnerability
Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.
CVE-2026-50528High· 8.2.NET Security Feature Bypass Vulnerability
Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-50525High· 7.5.NET Denial of Service Vulnerability
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-50659Medium· 6.5.NET Spoofing Vulnerability
Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.
CVE-2026-50651High· 7.5.NET Denial of Service Vulnerability
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.