Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

Advisories

Loading...
High
GSA_kwCzR0hTQS1mOHF4LW1qY3Etd2ZneM4AAlpY
ASP.NET Core Denial of Service Vulnerability
Ecosystems: nuget
Packages: Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-arm64, Microsoft.AspNetCore.App.Runtime.win-arm, Microsoft.AspNetCore.App.Runtime.osx-x64, Microsoft.AspNetCore.App.Runtime.linux-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm, Microsoft.AspNetCore.All, Microsoft.AspNetCore.App
Source: GitHub Advisory Database
Published: 9 months ago
Moderate
GSA_kwCzR0hTQS0yM2N2LWpoNHYtdmZmbc4AAjRA
Denial of service in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-arm, Microsoft.AspNetCore.App.Runtime.osx-x64, Microsoft.AspNetCore.App.Runtime.linux-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-x64, Microsoft.AspNetCore.App.Runtime.linux-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm, Microsoft.AspNetCore.Http.Connections, Microsoft.AspNetCore.App, Microsoft.AspNetCore.All
Source: GitHub Advisory Database
Published: 9 months ago
High
GSA_kwCzR0hTQS02NTVxLTlndmctcTRjbc4AAjQ_
Remote code execution in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-arm, Microsoft.AspNetCore.App.Runtime.osx-x64, Microsoft.AspNetCore.App.Runtime.linux-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm, Microsoft.AspNetCore.Http.Connections, Microsoft.AspNetCore.App, Microsoft.AspNetCore.All
Source: GitHub Advisory Database
Published: 9 months ago
Moderate
GSA_kwCzR0hTQS1wcnJmLTM5N3YtODN4aM4AAhTD
Open redirect in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.Server.HttpSys, Microsoft.AspNetCore.Server.IIS, Microsoft.AspNetCore.All, Microsoft.AspNetCore.App
Source: GitHub Advisory Database
Published: 9 months ago
High
GSA_kwCzR0hTQS0zd2NqLXJnOHEtOWNxds4AAXe1
Open redirect in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.All
Source: GitHub Advisory Database
Published: 9 months ago
High
GSA_kwCzR0hTQS02cHg4LTIydzUtdzMzNM4AAUYz
Denial of service in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.All, Microsoft.AspNetCore.App, Microsoft.NETCore.App, System.Net.WebSockets.WebSocketProtocol, Microsoft.AspNetCore.Server.Kestrel.Core, Microsoft.AspNetCore.WebSockets
Source: GitHub Advisory Database
Published: 9 months ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWNncHctMmdwaC0ycjln
Moderate severity vulnerability that affects Microsoft.AspNetCore.All, Microsoft.AspNetCore.App, and Microsoft.AspNetCore.Server.Kestrel.Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.All, Microsoft.AspNetCore.Server.Kestrel.Core, Microsoft.AspNetCore.App
Source: GitHub Advisory Database
Published: over 4 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNtMnItcTh4My14bWY3
Moderate severity vulnerability that affects Microsoft.AspNetCore.All, Microsoft.AspNetCore.Server.Kestrel.Core, Microsoft.AspNetCore.Server.Kestrel.Transport.Abstractions, and Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv
Ecosystems: nuget
Packages: Microsoft.AspNetCore.All, Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv, Microsoft.AspNetCore.Server.Kestrel.Transport.Abstractions, Microsoft.AspNetCore.Server.Kestrel.Core
Source: GitHub Advisory Database
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW12MnItcTRnNS1qOHE1
Denial of service in ASP.NET Core
Ecosystems: nuget
Packages: Microsoft.AspNetCore.DataProtection.AzureStorage, Microsoft.AspNetCore.All, Microsoft.Data.OData
Source: GitHub Advisory Database
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWozNzgtNm1tdy1ocWZy
Denial of service vulnerability exists when System.IO.Pipelines improperly handles requests
Ecosystems: nuget
Packages: System.IO.Pipelines, Microsoft.AspNetCore.App, Microsoft.AspNetCore.All
Source: GitHub Advisory Database
Published: over 4 years ago
Filter by Package
Microsoft.ChakraCore 67 Microsoft.AspNetCore.App.Runtime.linux-musl-x64 13 Microsoft.AspNetCore.App.Runtime.win-x86 13 Microsoft.AspNetCore.App.Runtime.win-x64 13 Microsoft.AspNetCore.App.Runtime.linux-x64 13 Microsoft.AspNetCore.App.Runtime.win-arm 13 Microsoft.AspNetCore.App.Runtime.osx-x64 13 Microsoft.AspNetCore.App.Runtime.linux-arm 13 Microsoft.AspNetCore.App.Runtime.linux-arm64 13 Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 12 DotNetNuke.Core 11 Microsoft.AspNetCore.App.Runtime.win-arm64 10 Microsoft.NETCore.App 10 Microsoft.AspNetCore.All 10 Microsoft.AspNetCore.App.Runtime.linux-musl-arm 8 Microsoft.AspNetCore.App 8 Microsoft.NETCore.App.Runtime.win-x64 7 Microsoft.NETCore.App.Runtime.win-x86 7 Microsoft.NETCore.App.Runtime.osx-x64 7 Microsoft.NETCore.App.Runtime.win-arm64 7 Microsoft.NETCore.App.Runtime.win-arm 7 Microsoft.NETCore.App.Runtime.linux-musl-arm64 7 Microsoft.NETCore.App.Runtime.linux-x64 7 Microsoft.NETCore.App.Runtime.linux-musl-x64 7 Microsoft.NETCore.App.Runtime.linux-arm64 7 Microsoft.NETCore.App.Runtime.linux-arm 7 Microsoft.AspNetCore.Mvc.Core 6 OPCFoundation.NetStandard.Opc.Ua.Core 6 System.Net.Http 5 Microsoft.AspNetCore.Mvc.Cors 5 System.Text.Encodings.Web 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.linux-x64 5 Microsoft.AspNetCore.Server.Kestrel.Core 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.osx-x64 5 Microsoft.NETCore.App.Runtime.linux-musl-arm 5 Microsoft.NETCore.App.Runtime.Mono.linux-arm 5 Microsoft.NETCore.App.Runtime.Mono.osx-x64 5 Microsoft.NETCore.App.Runtime.Mono.linux-arm64 5 Microsoft.NETCore.App.Runtime.Mono.linux-x64 5 Microsoft.NETCore.App.Runtime.Mono.linux-musl-x64 5 Microsoft.NETCore.App.Runtime.rhel.6-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.linux-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.linux-arm64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.osx-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.linux-arm64 5 Microsoft.AspNetCore.App.Runtime.osx-arm64 5 CefSharp.Wpf 5 CefSharp.Wpf.HwndHost 5 CefSharp.WinForms 5 CefSharp.Common 5 Microsoft.AspNetCore.Mvc.Formatters.Xml 4 Microsoft.AspNetCore.Mvc.WebApiCompatShim 4 System.Net.Http.WinHttpHandler 4 Microsoft.AspNetCore.Mvc.Localization 4 Microsoft.AspNetCore.Mvc.Razor 4 Microsoft.AspNetCore.Mvc.ViewFeatures 4 Microsoft.AspNetCore.Mvc.TagHelpers 4 Microsoft.AspNetCore.Mvc.Razor.Host 4 Microsoft.AspNetCore.Mvc.Abstractions 4 Microsoft.AspNetCore.Mvc.Formatters.Json 4 Microsoft.AspNetCore.Mvc.DataAnnotations 4 Microsoft.AspNetCore.Mvc.ApiExplorer 4 System.Net.WebSockets.Client 4 System.Net.Security 4 Microsoft.AspNetCore.Mvc 4 tinymce/tinymce 4 SharpZipLib 4 TinyMCE 4 tinymce 4 OPCFoundation.NetStandard.Opc.Ua 4 AjaxNetProfessional 3 UmbracoCms 3 Microsoft.WindowsDesktop.App.Runtime.win-x64 3 SSCMS 3 System.Security.Cryptography.Xml 3 System.Private.Uri 3 Microsoft.NETCore.App.Runtime.Mono.ios-arm.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm64 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-x64 2 Microsoft.NETCore.App.Runtime.Mono.tvos-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-x64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.osx-arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvos-arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvos-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.tvos-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.win-x64 2 Microsoft.NETCore.App.Runtime.Mono.win-x86 2 Microsoft.NETCore.App.Runtime.osx-arm64 2 System.ServiceModel.NetTcp 2 System.Private.ServiceModel 2 System.ServiceModel.Duplex 2 System.ServiceModel.Security 2 System.ServiceModel.Http 2 System.ServiceModel.Primitives 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64.Msi.x86 2 NuGet.CommandLine 2 Microsoft.Owin 2 elFinder.NetCore 2 Umbraco.Cms.Core 2 NuGet.Commands 2 DisCatSharp 2 PeterO.Cbor 2 google/protobuf 2 github.com/protocolbuffers/protobuf 2 protobuf 2 com.google.protobuf:protobuf-parent 2 Google.Protobuf 2 sharpcompress 2 System.Management.Automation 2 Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-x86 2 Microsoft.NETCore.App.Runtime.Mono.android-x64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.android-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-x64 2 Piranha 2 Microsoft.NETCore.App.Runtime.Mono.android-arm64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-x86 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.ios-arm64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-arm64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.browser-wasm 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-x86.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.AOT.linux-x64.Cross.android-x86 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.browser-wasm.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.x86 2 Microsoft.NETCore.App.Runtime.AOT.linux-x64.Cross.android-arm64 2 Microsoft.NETCore.App.Runtime.AOT.linux-x64.Cross.android-x64 2 Microsoft.NETCore.App.Runtime.AOT.linux-x64.Cross.android-arm 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.android-arm 2 Microsoft.NETCore.App.Runtime.Mono.browser-wasm 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.android-x86 2 Microsoft.NETCore.App.Runtime.browser-wasm 2 Microsoft.NETCore.App.Runtime.AOT.linux-x64.Cross.browser-wasm 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.browser-wasm 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-arm.Msi.x64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.android-x64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.android-arm64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.iossimulator-arm64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.arm64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.iossimulator-x86 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.iossimulator-x64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.maccatalyst-x64 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.ios-arm 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.maccatalyst-arm64 2 OrchardCore 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-x64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.x64 2 Microsoft.AspNetCore.Server.HttpSys 2 starkbank-ecdsa 2 Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.android-x64.Msi.arm64 2 Sustainsys.Saml2 2 Moment.js 2 moment 2 Microsoft.NETCore.App.Runtime.Mono.android-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.android-x64 2 Microsoft.AspNetCore.Http.Connections 2 Microsoft.WindowsDesktop.App.Runtime.win-x86 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.tvossimulator-x64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-arm 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.tvossimulator-arm64 2 ServiceStack 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.tvos-arm64 2 Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv 1 Microsoft.AspNetCore.Server.WebListener 1 Microsoft.Net.Http.Server 1 CefSharp.Wpf.NETCore 1 Halibut 1 Microsoft.AspNetCore.Server.Kestrel.Transport.Abstractions 1 RazorEngine 1 jquery.cookie 1 starkbank-ecdsa 1 CefSharp.OffScreen 1 YamlDotNet.Signed 1 recurly-api-client 1 net.sf.mpxj:mpxj 1 net.sf.mpxj 1 net.sf.mpxj-for-csharp 1 CefSharp.Common.NETCore 1 mpxj 1 SinGooCMS.Utility 1 IpMatcher 1 YamlDotNet 1 Bond.Core.CSharp 1 net.sf.mpxj-for-vb 1 C1CMS.Assemblies 1 System.Security.Cryptography.X509Certificates 1 github.com/beego/beego/v2 1 github.com/beego/beego/v2/nuget 1 DotNetCasClient 1 org.jasig.cas:cas-client 1 jasig/phpcas 1 Jellyfin.Common 1 Masuit.Tools.Core 1 Hangfire.Core 1 directxtex_desktop_2017 1 directxtex_desktop_2019 1 System.DirectoryServices.Protocols 1 DotNetNuke.Web 1 TelerikMvcExtensions 1 directxtex_desktop_win10 1 directxtex_uwp 1 Nancy 1 django-tinymce 1 Microsoft.AspNetCore.SignalR.Protocols.MessagePack 1 Microsoft.AspNetCore.WebSockets 1 System.Net.WebSockets.WebSocketProtocol 1 Microsoft.NetCore.App.Runtime.linux-arm 1 Microsoft.NetCore.App.Runtime.linux-arm64 1 Microsoft.NetCore.App.Runtime.linux-musl-arm 1 Microsoft.NetCore.App.Runtime.linux-musl-arm64 1 Microsoft.NetCore.App.Runtime.linux-musl-x64 1 tusdotnet 1 com.starkbank:ecdsa-java 1 starkbank-ecdsa 1 Microsoft.NetCore.App.Runtime.win-arm 1 Microsoft.NetCore.App.Runtime.win-arm64 1 Microsoft.NetCore.App.Runtime.win-x64 1 Microsoft.NetCore.App.Runtime.win-x86 1 Azure.Storage.Queues 1 Microsoft.AspNetCore.Server.IIS 1 Microsoft.NETCore.Jit 1 AgileConfig.Client 1 Azure.Storage.Blobs 1 CefSharp.OffScreen.NETCore 1 DotNetZip 1 CefSharp.WinForms.NETCore 1 HtmlSanitizer 1 Microsoft.NetCore.App.Runtime.osx-x64 1 Microsoft.AspNetCore.Http 1 Apache.Avro 1 jquery 1 Microsoft.NetCore.App.Runtime.osx-arm64 1 CompositeC1.Core 1 NuGet.Protocol 1 Microsoft.WindowsDesktop.App.Ref 1 UmbracoForms 1 OrchardCore.Application.Cms.Targets 1 Microsoft.NETCore.App.Host.linux-arm 1 swagger-ui-react 1 Microsoft.NETCore.App.Host.linux-musl-arm64 1 Microsoft.NETCore.App.Host.linux-musl-x64 1 Microsoft.NETCore.App.Host.linux-x64 1 Microsoft.NETCore.App.Host.osx-x64 1 Microsoft.NETCore.App.Host.rhel.6-x64 1 swagger-ui-dist 1 Microsoft.NETCore.App.Host.win-arm64 1 Microsoft.NETCore.App.Host.win-x64 1 Microsoft.NETCore.App.Host.win-x86 1 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.x86 1 compu-brotli-sys 1 elFinder.Net.Core 1 Microsoft.NETCore.App.Host.linux-arm64 1 Microsoft.NETCore.App.Host.win-arm 1 RestSharp 1 elFinder.AspNet 1 BTCPayServer.Client 1 System.Text.RegularExpressions 1 FastReport.OpenSource 1 System.Data.SqlClient 1 Microsoft.Bot.Connector 1 Microsoft.NETCore.App.Runtime.android-arm 1 Microsoft.NETCore.App.Runtime.android-arm64 1 Microsoft.NETCore.App.Runtime.android-x64 1