CVE-2026-62902
EUVD-2026-5641011.08.2026, 17:18
Inclusion of functionality from untrusted control sphere in .NET allows an unauthorized attacker to disclose information over a network.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | visual_studio_2022 | 17.14.0 ≤ 𝑥 < 17.14.38 |
| microsoft | visual_studio_2026 | 18.8.0 ≤ 𝑥 < 18.8.3 |
| microsoft | .net | 8.0.0 ≤ 𝑥 < 8.0.30 |
| microsoft | .net | 9.0.0 ≤ 𝑥 < 9.0.19 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| dotnet6 |
| ||||||||||||||
| dotnet7 |
| ||||||||||||||
| dotnet8 |
| ||||||||||||||
| dotnet9 |
| ||||||||||||||
| dotnet10 |
|
Common Weakness Enumeration