Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-81192
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
OpenTelemetry.Resources.Host vulnerable to arbitrary code execution via local PATH hijacking on macOS 08 Sep
  • Fix available
  • Severity - 7.0 (High)
CVE-2026-44213
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
OpenTelemetry.Exporter.Instana bypasses TLS certificate validation when a proxy is configured 26 May
  • Fix available
  • Severity - 6.5 (Medium)
CVE-2026-42348
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
OpAMP client reads unbounded HTTP response bodies 12 May
  • Fix available
  • Severity - 5.9 (Medium)
CVE-2026-41484
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
OpenTelemetry.Exporter.OneCollector vulnerable to denial of service via unbounded HTTP error response body 06 May
  • No fix available
  • Severity - 5.3 (Medium)
CVE-2026-41483
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
Unbounded HTTP response body read in OpenTelemetry.Resources.Azure 06 May
  • No fix available
  • Severity - 5.9 (Medium)
CVE-2026-41173
  • github.com/open-telemetry/opentelemetry-dotnet-contrib
Unbounded HTTP response body read in OpenTelemetry.Sampler.AWS 23 Apr
  • Fix available
  • Severity - 5.9 (Medium)