.NET Framework 4.x — End of Life
Active High risk12 releases in this series234 CVEs
.NET Framework 4.x — All releases
| Version | Released | Active support | EOL date | Latest patch | Status | Alert me |
|---|---|---|---|---|---|---|
| 4.8.1 | Aug 9, 2022 | — | No | — | Active | |
| 4.8 | Apr 18, 2019 | — | No | — | Active | |
| 4.7.2 | Apr 30, 2018 | — | No | — | Active | |
| 4.7.1 | Oct 17, 2017 | — | No | — | Active | |
| 4.7 | Apr 5, 2017 | — | No | — | Active | |
| 4.6.2 | Aug 2, 2016 | — | Jan 12, 2027 | — | Active | |
| 4.6.1 | Nov 30, 2015 | — | Apr 26, 2022 | — | EOL | |
| 4.6 | Jul 20, 2015 | — | Apr 26, 2022 | — | EOL | |
| 4.5.2 | May 5, 2014 | — | Apr 26, 2022 | — | EOL | |
| 4.5.1 | Oct 17, 2013 | — | Jan 12, 2016 | — | EOL | |
| 4.5 | Aug 15, 2012 | — | Jan 12, 2016 | — | EOL | |
| 4.0 | Apr 12, 2010 | — | Jan 12, 2016 | — | EOL |
CVEs affecting .NET Framework 4.x (234)
| CVE | Severity | CVSS | EPSS | KEV | Cycle | Description | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.8 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.8.1 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.7.1 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.6 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.7.2 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.6.1 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.7 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-70354 | HIGH | 7.8 | 0.29% | — | 4.6.2 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.7.2 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.6 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.8.1 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.8 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.6.2 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.7 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.6.1 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-65810 | HIGH | 7.8 | 0.26% | — | 4.7.1 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62897 | HIGH | 7.0 | 0.33% | — | 4.8.1 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-62897 | HIGH | 7.0 | 0.33% | — | 4.7 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-62897 | HIGH | 7.0 | 0.33% | — | 4.7.1 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-62897 | HIGH | 7.0 | 0.33% | — | 4.8 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-62897 | HIGH | 7.0 | 0.33% | — | 4.7.2 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.8 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.6.2 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.7.1 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.6.1 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.8.1 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.6 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.7.2 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-62872 | HIGH | 8.8 | 0.53% | — | 4.7 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | Aug 11, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.8 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.6.2 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.7.1 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.8.1 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.7.2 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.6 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.6.1 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50659 | MEDIUM | 6.5 | 0.55% | — | 4.7 | Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network. | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.6 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.6.2 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.7.2 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.7.1 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.7 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.8.1 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.6.1 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50650 | HIGH | 7.8 | 0.29% | — | 4.8 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate p… | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.6.1 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.8 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.7.2 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.8.1 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.6 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.7.1 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.7 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50649 | HIGH | 7.8 | 0.93% | — | 4.6.2 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.8 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.7.1 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.8.1 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.7 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.6.1 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.7.2 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.6.2 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50648 | HIGH | 7.5 | 0.84% | — | 4.6 | Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o… | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.7.1 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.7.2 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.6.2 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.6.1 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.7 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.8 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.6 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50646 | HIGH | 7.8 | 0.96% | — | 4.8.1 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.6 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.7 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.8.1 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.7.1 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.6.1 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.6.2 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.8 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50527 | HIGH | 7.5 | 0.84% | — | 4.7.2 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network. | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.7 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.6 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.8.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.8 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.6.2 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.6.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.7.2 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50525 | HIGH | 7.5 | 0.60% | — | 4.7.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.7.2 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.6.1 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.7 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.7.1 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.8 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.6 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.8.1 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47304 | HIGH | 8.1 | 0.21% | — | 4.6.2 | Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.8.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.6.2 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.7.2 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.6 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.6.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.8 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.7.1 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-47302 | HIGH | 7.5 | 1.02% | — | 4.7 | Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.6.2 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.7.2 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.7 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.6.1 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.8 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.7.1 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.8.1 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50647 | HIGH | 7.5 | 1.17% | — | 4.6 | Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.6.2 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.7 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.7.2 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.7.1 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.8.1 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.6 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.8 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50411 | HIGH | 7.5 | 1.17% | — | 4.6.1 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.6.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.8 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.7.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.7 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.6 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.7.2 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.6.2 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50368 | HIGH | 7.5 | 1.17% | — | 4.8.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.7.2 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.6.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.6.2 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.8 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.7.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.7 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.8.1 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50355 | HIGH | 7.5 | 1.17% | — | 4.6 | Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.8.1 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.8 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.6.2 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.7.1 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.6 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.7 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.7.2 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50653 | HIGH | 7.5 | 1.17% | — | 4.6.1 | Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.7.1 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.8 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.6.2 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.6.1 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.8.1 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.6 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.7 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-50652 | HIGH | 7.5 | 1.73% | — | 4.7.2 | Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a netwo… | Jul 14, 2026 |
| CVE-2026-35433 | HIGH | 7.3 | 0.66% | — | 4.8.1 | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-35433 | HIGH | 7.3 | 0.66% | — | 4.7 | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-35433 | HIGH | 7.3 | 0.66% | — | 4.7.1 | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-35433 | HIGH | 7.3 | 0.66% | — | 4.7.2 | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-35433 | HIGH | 7.3 | 0.66% | — | 4.8 | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.6 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.7.2 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.7 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.8.1 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.7.1 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.6.1 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.6.2 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-32177 | HIGH | 7.3 | 0.55% | — | 4.8 | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.6.2 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.6.1 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.8 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.8.1 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.7.2 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.7.1 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.7 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-33116 | HIGH | 7.5 | 2.14% | — | 4.6 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized att… | Apr 14, 2026 |
| CVE-2026-32226 | MEDIUM | 5.9 | 0.54% | — | 4.8 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an … | Apr 14, 2026 |
| CVE-2026-32226 | MEDIUM | 5.9 | 0.54% | — | 4.7.2 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an … | Apr 14, 2026 |
| CVE-2026-32226 | MEDIUM | 5.9 | 0.54% | — | 4.7 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an … | Apr 14, 2026 |
| CVE-2026-32226 | MEDIUM | 5.9 | 0.54% | — | 4.8.1 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an … | Apr 14, 2026 |
| CVE-2026-32226 | MEDIUM | 5.9 | 0.54% | — | 4.7.1 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an … | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.7.2 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.6.2 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.7 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.8.1 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.6.1 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.6 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.7.1 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2026-23666 | HIGH | 7.5 | 1.33% | — | 4.8 | Improper input validation in .NET Framework allows an unauthorized attacker to deny service over a network. | Apr 14, 2026 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.8.1 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.6 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.8 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.7.1 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.6.2 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.7.2 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.6.1 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36899 | HIGH | 8.8 | 76.71% | — | 4.7 | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.6.2 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.8 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.6.1 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.7.1 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.7.2 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.6 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.7 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-36873 | HIGH | 7.4 | 1.50% | — | 4.8.1 | .NET Framework Spoofing Vulnerability | Aug 8, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.7 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.8 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.8.1 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.7.1 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.6.2 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.6.1 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.7.2 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21808 | HIGH | 7.8 | 1.14% | — | 4.6 | .NET and Visual Studio Remote Code Execution Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.8.1 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.6.1 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.7 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.8 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.7.2 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.6 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.7.1 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2023-21722 | MEDIUM | 5.0 | 0.91% | — | 4.6.2 | .NET Framework Denial of Service Vulnerability | Feb 14, 2023 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.8.1 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.6 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.6.1 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.6.2 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.7.1 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.7.2 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.7 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2022-41064 | MEDIUM | 5.8 | 0.76% | — | 4.8 | .NET Framework Information Disclosure Vulnerability | Nov 9, 2022 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.7.2 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.6.1 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.7.1 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.7 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.8.1 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.5 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.5.2 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.8 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.6.2 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.6 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
| CVE-2020-1108 | HIGH | 7.5 | 6.25% | — | 4.5.1 | A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker w… | May 21, 2020 |
Frequently asked questions
Is .NET Framework 4 end of life?
Partially. Some .NET Framework 4.x releases have reached EOL. Check the version table above for the exact status of each sub-release.
What CVEs affect .NET Framework 4?
There are 234 CVEs tracked for .NET Framework 4.x. See the full list above with CVSS and EPSS scores.
What is the latest .NET Framework 4 version?
Check the version table above for the latest .NET Framework 4.x patch release.
When was .NET Framework 4 first released?
.NET Framework 4.0 was initially released on August 9, 2022. See the full version timeline in the table above.
Is it safe to run .NET Framework 4 in production?
.NET Framework 4 is still supported and safe for production use. Ensure you are running the latest patch version to have all security fixes applied.
Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA
