DotVVM has 3 CVEs on record. The busiest recent month was June 2026 with 3. The median CVSS is 5.3 (medium), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 5.3
- Publish → KEV
- —
- Last 90 days
- 0 prev 3
Weakness classes
Products
- DotVVM 3
3
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
DotVVM vulnerabilities
CVEs affecting DotVVM, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
GHSA-c2g3-c4gc-w5wgHighReDoS in DotVVM routing
ReDoS in DotVVM routing
▾ TwilightDotVVM · DotVVMvia GHSA
GHSA-c8qj-jx8j-fg2wCriticalDotVVM: Missing authorization in AuthorizeActionFilter
DotVVM: Missing authorization in AuthorizeActionFilter
▾ MidnightDotVVM · DotVVMvia GHSA
GHSA-2rm3-333w-xvc4Medium· 5.3DotVVM: Unrestricted file upload
DotVVM: Unrestricted file upload
▾ SunlitDotVVM · DotVVMvia GHSA