Skip to main content

Vendor/product archive

microsoft / asp.net_core CVEs

Beta · best-effort

38 CVEs tagged to microsoft / asp.net_core2 Critical, 29 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2026-40372

Published Apr 21, 2026

Improper verification of cryptographic signature in ASP.NET Core allows an unauthorized attacker to elevate privileges over a network.

CVSS 9.1 · Critical
evidence mentions
9
Buzz score
43.0
Vendor/product tagsBeta · best-effort

CVE-2026-26130

Published Mar 10, 2026

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

CVSS 7.5 · High
evidence mentions
19
Buzz score
48.0
Vendor/product tagsBeta · best-effort

CVE-2019-1302

Published Sep 11, 2019

An elevation of privilege vulnerability exists when a ASP.NET Core web application, created using vulnerable project templates, fails to properly sanitize web requests, aka 'ASP.N…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1075

Published Jul 15, 2019

A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-0982

Published May 16, 2019

A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-0815

Published Apr 9, 2019

A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-0564

Published Jan 8, 2019

A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka "ASP.NET Core Denial of Service Vulnerability." This affects ASP.NET Core 2.1. This…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 38 CVEsPage 1 of 2