Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-gvvw-8j96-8g5r
  • NuGet/Microsoft.Native.Quic.MsQuic.OpenSSL
  • NuGet/Microsoft.Native.Quic.MsQuic.Schannel
MsQuic has a Remote Elevation of Privilege Vulnerability 12 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
GHSA-g4vj-cjjj-v7hg
  • NuGet/NuGet.CommandLine
  • NuGet/NuGet.Packaging
  • NuGet/NuGet.Protocol
Defense in Depth update for NuGet Client yesterday
  • Fix available
GHSA-2hx3-vp6r-mg3f
  • NuGet/kiota
Kiota: Code Generation Literal Injection yesterday
  • Fix available
  • Severity - 7.3 (High)
GHSA-fcpv-w245-r2q7
  • NuGet/DotNetNuke.Core
DotNetNuke.Core security code analysis rules triggered yesterday
  • Fix available
GHSA-x928-4434-crqj
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has a memory leak in PNG encoder when writing a MNG image yesterday
  • Fix available
  • Severity - 3.7 (Low)
GHSA-pmpg-6pww-fg6q
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has out-of-bounds access in ConnectedComponentsImage() via CLI-controlled connected-components:* artifacts yesterday
  • Fix available
  • Severity - 3.3 (Low)
GHSA-8vfj-q2cp-5m5j
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has a heap buffer overflow read in magnify operation via unrecognized magnify:method value yesterday
  • Fix available
  • Severity - 3.3 (Low)
GHSA-98cp-rj9f-6v5g
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has has a stack-buffer-overflow in MNG encoder with oversized pallete yesterday
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-q8h3-jv9v-57qx
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has has an off-by-one origin validation in allows out-of-bounds read in morphology processing yesterday
  • Fix available
  • Severity - 3.3 (Low)
GHSA-w54j-7wpm-crhj
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-x64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • ... 13 more
ImageMagick has a heap-buffer-overflow in FTXT encoder yesterday
  • Fix available
  • Severity - 3.3 (Low)
GHSA-w3x6-4m5h-cxqf
  • NuGet/System.Security.Cryptography.Xml
Microsoft Security Advisory CVE-2026-26171 – .NET Denial of Service Vulnerability yesterday
  • Fix available
  • Severity - 7.5 (High)
GHSA-37gx-xxp4-5rgx
  • NuGet/System.Security.Cryptography.Xml
Microsoft Security Advisory CVE-2026-33116 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability yesterday
  • Fix available
  • Severity - 7.5 (High)
GHSA-vmwf-m9c5-3jvc
  • NuGet/Microsoft.NetCore.App.Runtime.linux-arm
  • NuGet/Microsoft.NetCore.App.Runtime.linux-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-arm
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-x64
  • ... 7 more
Microsoft Security Advisory CVE-2026-32178 – .NET Spoofing Vulnerability yesterday
  • Fix available
GHSA-5xg3-585r-9jh5
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • NuGet/Magick.NET-Q16-HDRI-x64
  • ... 12 more
ImageMagick has an off-by-one error in MSL decoder could result in crash yesterday
  • Fix available
  • Severity - 6.2 (Medium)
GHSA-r83h-crwp-3vm7
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-arm64
  • NuGet/Magick.NET-Q16-HDRI-x64
  • ... 11 more
ImageMagick has a heap-use-after-free via XMP profile could result in a crash when printing the values. yesterday
  • Fix available
  • Severity - 5.5 (Medium)
GHSA-pwg5-6jfc-crvh
  • NuGet/Magick.NET-Q16-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-AnyCPU
  • NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64
  • NuGet/Magick.NET-Q16-HDRI-x64
  • NuGet/Magick.NET-Q16-HDRI-x86
  • ... 11 more
ImageMagick has a heap out-of-bounds write in JP2 encoder yesterday
  • Fix available
  • Severity - 5.5 (Medium)