ASP.NET Core Denial of Service Vulnerability
CVE-2026-69304
5.9MEDIUM
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-69304?
Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Affected Version(s)
.NET 10.0 10.0.0 < 10.0.12
.NET 8.0 8.0.0 < 8.0.31
.NET 9.0 9.0.0 < 9.0.20