Know every vulnerabilitybefore it knows you.
DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.
- Feiten
Microsoft heeft kwetsbaarheden verholpen in .NET, .NET Framework, Visual Studio en PowerShell.
- Interpretaties
Een kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Toegang tot gevoelige gegevens
- Omzeilen van een beveiligingsmaatregel
- Spoofing
.NET, .NET Framework, Visual Studio:CVE-ID
CVSS
Impact
CVE-2026-33116
7,50
Denial-of-Service
Microsoft PowerShell:
CVE-ID
CVSS
Impact
CVE-2026-26143
7,80
Omzeilen van beveiligingsmaatregel
GitHub Copilot and Visual Studio Code:
CVE-ID
CVSS
Impact
CVE-2026-23653
5,70
Toegang tot gevoelige gegevens
.NET and Visual Studio:
CVE-ID
CVSS
Impact
CVE-2026-32203
7,50
Denial-of-Service
.NET Framework:
CVE-ID
CVSS
Impact
CVE-2026-32226
5,90
Denial-of-Service
CVE-2026-23666
7,50
Denial-of-Service
.NET:
CVE-ID
CVSS
Impact
CVE-2026-32178
7,50
Voordoen als andere gebruiker
CVE-2026-26171
7,50
Denial-of-Service
- Oplossingen
Microsoft heeft updates beschikbaar gesteld waarmee de beschreven kwetsbaarheden worden verholpen. We raden u aan om deze updates te installeren. Meer informatie over de kwetsbaarheden, de installatie van de updates en eventuele work-arounds vindt u op:
https://portal.msrc.microsoft.com/en-us/security-guidance
- Kans
medium
- Schade
high
- CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
- CWE-755
Improper Handling of Exceptional Conditions
- CWE-400
Uncontrolled Resource Consumption
- CWE-611
Improper Restriction of XML External Entity Reference
- CWE-138
Improper Neutralization of Special Elements
- CWE-121
Stack-based Buffer Overflow
- CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
- CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
- CWE-20
Improper Input Validation
Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.
Checkout DevGuard