CVE-2026-50659
Published Jul 14, 2026Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.
- evidence mentions
- 4
- Buzz score
- 29.1
Vendor/product archive
19 CVEs tagged to microsoft / visual_studio_2026 — 0 Critical, 17 High, 2 Medium, 0 Low, 0 Unrated.
Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.
Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.
Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.
Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.
Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.
Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
A tampering vulnerability exists when .NET Core improperly handles specially crafted files. An attacker who successfully exploited this vulnerability could write arbitrary files a…
Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.