VulnSea

Tagged “nuget”

CVEs tagged nuget, newest first.

159 CVEsRSS

CVE-2026-48733Medium· 4.7
3mo ago

ImageMagick has an Infinite Loop in subimage-search with crafted image

ImageMagick has an Infinite Loop in subimage-search with crafted image

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.12%via GHSA
CVE-2026-48734Medium· 5.5
3mo ago

ImageMagick Vulnerable to Stack Overflow in its MVG Decoder

ImageMagick Vulnerable to Stack Overflow in its MVG Decoder

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.15%via GHSA
CVE-2026-48994Medium· 5.9
3mo ago

ImageMagick has a Heap Buffer Over-Write in MAT decoder on 32-bit systems

ImageMagick has a Heap Buffer Over-Write in MAT decoder on 32-bit systems

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.37%via GHSA
CVE-2026-49218High· 7.5
3mo ago

ImageMagick: Policy Bypass in DCM decoder could result in image with invalid dimensions

ImageMagick: Policy Bypass in DCM decoder could result in image with invalid dimensions

▾ TwilightMagick · Magick.NET-Q16-AnyCPUEPSS 0.63%via GHSA
CVE-2026-49219Medium· 5.5
3mo ago

ImageMagick: Policy Bypass can read disallowed files via symlink

ImageMagick: Policy Bypass can read disallowed files via symlink

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.17%via GHSA
CVE-2026-53460High· 7.5
3mo ago

ImageMagick: Policy Bypass can Trigger an Out-of-Memory condition

ImageMagick: Policy Bypass can Trigger an Out-of-Memory condition

▾ TwilightMagick · Magick.NET-Q16-AnyCPUEPSS 0.63%via GHSA
CVE-2026-53461High· 7.5
3mo ago

ImageMagick has out-of-bounds write in ICON decoder due to incorrect loop

ImageMagick has out-of-bounds write in ICON decoder due to incorrect loop

▾ TwilightMagick · Magick.NET-Q16-AnyCPUEPSS 0.63%via GHSA
GHSA-98gv-6gmj-cm6mLow
3mo ago

Duplicate Advisory: ImageMagick: Memory leak in coders/txt.c without freetype

Duplicate Advisory: ImageMagick: Memory leak in coders/txt.c without freetype

▾ SunlitMagick · Magick.NET-Q16-AnyCPUvia GHSA
GHSA-8g9f-ccmr-vfvgMedium· 3.7
3mo ago

Duplicate Advisory: ImageMagick has a possible heap Use After Free vulnerability in its meta coder

Duplicate Advisory: ImageMagick has a possible heap Use After Free vulnerability in its meta coder

▾ SunlitMagick · Magick.NET-Q16-AnyCPUvia GHSA
GHSA-v772-658q-978pLow
3mo ago

Duplicate Advisory: ImageMagick: SVG-to-MVG Command Injection via coders/svg.c

Duplicate Advisory: ImageMagick: SVG-to-MVG Command Injection via coders/svg.c

▾ SunlitMagick · Magick.NET-Q16-AnyCPUvia GHSA
CVE-2026-56379High· 8.1
3mo ago

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector G…

▾ Twilightimagemagick · imagemagickEPSS 1.6%via NVD
CVE-2026-56371Medium· 5.3
3mo ago

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allocated via ReadImage is not released when GetTypeMetrics fails, leaking memory each…

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allocated via ReadImage is not released when GetTypeMetrics fails, leaking memory each…

▾ Sunlitimagemagick · imagemagickEPSS 0.44%via NVD
GHSA-c2g3-c4gc-w5wgHigh
3mo ago

ReDoS in DotVVM routing

ReDoS in DotVVM routing

▾ TwilightDotVVM · DotVVMvia GHSA
GHSA-c8qj-jx8j-fg2wCritical
3mo ago

DotVVM: Missing authorization in AuthorizeActionFilter

DotVVM: Missing authorization in AuthorizeActionFilter

▾ MidnightDotVVM · DotVVMvia GHSA
GHSA-2rm3-333w-xvc4Medium· 5.3
3mo ago

DotVVM: Unrestricted file upload

DotVVM: Unrestricted file upload

▾ SunlitDotVVM · DotVVMvia GHSA
CVE-2026-54772High· 7.5
3mo ago

CoreWCF: Pre-authentication infinite-loop CPU exhaustion in CoreWCF net.tcp / net.pipe / net.uds framing handshake

CoreWCF: Pre-authentication infinite-loop CPU exhaustion in CoreWCF net.tcp / net.pipe / net.uds framing handshake

▾ TwilightCoreWCF · CoreWCF.NetFramingBaseEPSS 0.85%via GHSA
CVE-2026-54773Medium· 5.9
3mo ago

CoreWCF: WS-Security signature substitution via document-wide Signature lookup

CoreWCF: WS-Security signature substitution via document-wide Signature lookup

▾ SunlitCoreWCF · CoreWCF.PrimitivesEPSS 0.37%via GHSA
CVE-2026-54774High· 7.4
3mo ago

CoreWCF: SamlSerializer skips SignatureValue verification when SAML signing token is not an X.509 certificate

CoreWCF: SamlSerializer skips SignatureValue verification when SAML signing token is not an X.509 certificate

▾ TwilightCoreWCF · CoreWCF.PrimitivesEPSS 0.20%via GHSA
CVE-2026-54775Medium· 6.5
3mo ago

CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-value record), causing persistent endpoint denial of service.

CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-value record), causing persistent endpoint denial of service.

▾ SunlitCoreWCF · CoreWCF.KafkaEPSS 0.60%via GHSA
CVE-2026-54776Medium· 4.4
3mo ago

CoreWCF: Unix Domain Socket PosixIdentity transport accepts connections that skip the security upgrade

CoreWCF: Unix Domain Socket PosixIdentity transport accepts connections that skip the security upgrade

▾ SunlitCoreWCF · CoreWCF.UnixDomainSocketEPSS 0.15%via GHSA
CVE-2026-54777Medium· 6.5
3mo ago

CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance

CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance

▾ SunlitCoreWCF · CoreWCF.NetNamedPipeEPSS 0.12%via GHSA
CVE-2026-54778Medium· 6.2
3mo ago

CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution

CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution

▾ SunlitCoreWCF · CoreWCF.UnixDomainSocketEPSS 0.13%via GHSA
CVE-2026-54779Medium· 5.9
3mo ago

CoreWCF: SAML token replay protection is inoperative

CoreWCF: SAML token replay protection is inoperative

▾ SunlitCoreWCF · CoreWCF.PrimitivesEPSS 0.43%via GHSA
CVE-2026-54780Low· 3.7
3mo ago

CoreWCF: WS-Security Reference DigestMethod Algorithm-Suite Bypass

CoreWCF: WS-Security Reference DigestMethod Algorithm-Suite Bypass

▾ SunlitCoreWCF · CoreWCF.PrimitivesEPSS 0.24%via GHSA
CVE-2026-54781High· 7.4
3mo ago

CoreWCF: SAML SubjectConfirmation methods and holder-of-key proof keys are not enforced

CoreWCF: SAML SubjectConfirmation methods and holder-of-key proof keys are not enforced

▾ TwilightCoreWCF · CoreWCF.PrimitivesEPSS 0.25%via GHSA
CVE-2026-54782Critical· 10.0
3mo ago

CoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation

CoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation

▾ MidnightCoreWCF · CoreWCF.PrimitivesEPSS 0.41%via GHSA
CVE-2026-54783High· 7.4
3mo ago

CoreWCF: XML Signature Wrapping in WS-Security endorsing/supporting signature verification allows replay of captured signed messages

CoreWCF: XML Signature Wrapping in WS-Security endorsing/supporting signature verification allows replay of captured signed messages

▾ TwilightCoreWCF · CoreWCF.PrimitivesEPSS 0.19%via GHSA
CVE-2026-54784High· 7.4
3mo ago

CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality

CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality

▾ TwilightCoreWCF · CoreWCF.PrimitivesEPSS 0.27%via GHSA
CVE-2026-55254Medium· 4.8
3mo ago

NCalc: Denial of Service via Unbounded and Non-Terminating Factorial Evaluation

NCalc: Denial of Service via Unbounded and Non-Terminating Factorial Evaluation

▾ SunlitNCalc · NCalc.CoreEPSS 0.29%via GHSA
CVE-2026-48109High· 8.2
3mo ago

MessagePack's LZ4 decompression may fail with AccessViolationException after dereferencing memory from bad input

MessagePack's LZ4 decompression may fail with AccessViolationException after dereferencing memory from bad input

▾ TwilightMessagePack · MessagePackEPSS 0.51%via GHSA
CVEs tagged “nuget” — page 5 · VulnSea