Spoofing Vulnerability in .NET Framework by Microsoft
CVE-2026-32178

7.5HIGH

What is CVE-2026-32178?

An improper neutralization of special elements in the .NET Framework allows unauthorized attackers to perform spoofing attacks over a network. This vulnerability can lead to various security issues, including potential unauthorized access to user data and services. It is crucial for users and organizations employing the .NET Framework to apply necessary patches and updates to mitigate the risk associated with this vulnerability.

Affected Version(s)

.NET 10.0 10.0.0 < 10.0.6

.NET 8.0 8.0 < 8.0.26

.NET 8.0 8.0.0 < 8.0.26

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.