Information Disclosure Vulnerability in .NET by Microsoft
CVE-2026-62900

5.9MEDIUM

What is CVE-2026-62900?

The vulnerability arises from improper handling of sensitive data within the .NET framework, enabling unauthorized attackers to potentially access confidential information during storage or transmission. This flaw highlights the importance of implementing secure data management practices to safeguard against inadvertent data leakage over networks.

Affected Version(s)

.NET 10.0 10.0.0 < 10.0.11

.NET 8.0 8.0.0 < 8.0.30

.NET 9.0 9.0.0 < 9.0.19

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.