Vulnerability Directory
If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.
Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.
Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.
Severity
ID
Technology
Libraries Affected
Category
Version(s) Affected
Published Date
High
.NET
ASP.NET Core
Incorrect Implementation of Authentication Algorithm
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
ASP.NET Core
Authentication Bypass by Assumed-Immutable Data
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
.NET
Improper Verification of Cryptographic Signature
System.Security.Cryptography.Xml >= 6.0.0 < 6.0.2
Aug 3, 2026
High
.NET
.NET
Allocation of Resources Without Limits or Throttling
System.Security.Cryptography.Xml >= 6.0.0 < 6.0.2
Aug 3, 2026
High
.NET
.NET
Stack-based Buffer Overflow
System.Security.Cryptography.Xml >= 6.0.0 < 6.0.2
Aug 3, 2026
High
.NET
.NET (Windows Presentation Foundation)
Protection Mechanism Failure
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
.NET
Allocation of Resources Without Limits or Throttling
System.Security.Cryptography.Xml >= 6.0.0 < 6.0.2
Aug 3, 2026
High
.NET
.NET (Windows Presentation Foundation)
Deserialization of Untrusted Data
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
.NET (Windows Presentation Foundation)
Improper Control of Generation of Code ('Code Injection')
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
.NET
Allocation of Resources Without Limits or Throttling
>= 6.0.0 <= 6.0.42
Aug 3, 2026
High
.NET
.NET
Access of Resource Using Incompatible Type ('Type Confusion')
>= 6.0.0 <= 6.0.42
Aug 3, 2026
Medium
.NET
Azure Identity library for .NET (Azure.Identity)
Insufficiently Protected Credentials
Azure.Identity < 1.11.0
Jul 29, 2026
No results found
Please enter a valid Vulnerability ID number or Technology name.
