Export limit exceeded: 390124 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (389 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-69439 | 1 Microsoft | 5 .net, Microsoft Visual Studio 2022, Microsoft Visual Studio 2026 and 2 more | 2026-09-10 | 8.8 High |
| Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-69304 | 1 Microsoft | 6 .net, Asp.net Core, Microsoft Visual Studio 2022 and 3 more | 2026-09-10 | 5.9 Medium |
| Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network. | ||||
| CVE-2026-69806 | 1 Microsoft | 3 .net, Visual Studio 2022, Visual Studio 2026 | 2026-09-10 | 7 High |
| Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally. | ||||
| CVE-2026-81379 | 1 Microsoft | 1 Visual Studio Code | 2026-09-10 | 8.2 High |
| Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81356 | 1 Microsoft | 1 Visual Studio Code | 2026-09-10 | 8.2 High |
| Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81383 | 1 Microsoft | 1 Visual Studio Code | 2026-09-10 | 7.4 High |
| Use of incorrectly-resolved name or reference in Visual Studio Code allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-81376 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 9.6 Critical |
| Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-70334 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 7.8 High |
| Incomplete list of disallowed inputs in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. | ||||
| CVE-2026-81357 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 8.2 High |
| Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-78461 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 7.4 High |
| Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-81378 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 8.2 High |
| Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-78462 | 1 Microsoft | 1 Visual Studio Code | 2026-09-09 | 8.8 High |
| Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. | ||||
| CVE-2026-77906 | 1 Microsoft | 1 Visual Studio 2026 | 2026-09-09 | 8.8 High |
| Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-71328 | 1 Microsoft | 3 .net, Visual Studio 2022, Visual Studio 2026 | 2026-09-09 | 8.8 High |
| Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-69805 | 1 Microsoft | 3 Diagnostics Runtime, Visual Studio 2022, Visual Studio 2026 | 2026-09-09 | 7.5 High |
| External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-58649 | 1 Microsoft | 5 .net, Microsoft Visual Studio 2022, Microsoft Visual Studio 2026 and 2 more | 2026-09-08 | 6.5 Medium |
| Origin validation error in .NET allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-81381 | 1 Microsoft | 1 Visual Studio Code | 2026-09-08 | 6.5 Medium |
| Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-81380 | 1 Microsoft | 1 Visual Studio Code | 2026-09-08 | 5.3 Medium |
| Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | ||||
| CVE-2026-77907 | 1 Microsoft | 1 Visual Studio 2026 | 2026-09-08 | 8.8 High |
| Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-69522 | 1 Microsoft | 4 .net, .net Framework, Visual Studio 2022 and 1 more | 2026-09-08 | 8.8 High |
| Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. | ||||