Integer Overflow Vulnerability in .NET Framework by Microsoft
CVE-2026-62897

7HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
11 August 2026

What is CVE-2026-62897?

The vulnerability in the .NET Framework arises from an integer overflow or wraparound condition. This issue allows unauthorized attackers to potentially execute arbitrary code locally. It highlights the importance of applying the latest security updates to ensure protection from exploitation.

Affected Version(s)

.NET 10.0 10.0.0 < 10.0.11

.NET 8.0 8.0.0 < 8.0.30

.NET 9.0 9.0.0 < 9.0.19

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.