<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:59:12 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-06585</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-06585</link>
      <description>bdu:2023-06585</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-06585</guid>
    </item>
    <item>
      <title>BIT-dotnet-2022-30184 — .NET and Visual Studio Information Disclosure Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/bit-dotnet-2022-30184</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: dotnet&lt;/p&gt;
&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: dotnet&lt;/p&gt;
&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-dotnet-2022-30184</guid>
    </item>
    <item>
      <title>certfr-2022-avi-558 — Une vulnérabilité a été corrigée dans &lt;span class="textit"&gt;Microsoft
.Net&lt;/span&gt;. Elle permet à un attaquant de provoqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-558</link>
      <description>certfr-2022-avi-558</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-558</guid>
    </item>
    <item>
      <title>CLEANSTART-2024-HP98221 — .NET and Visual Studio Information Disclosure Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2024-hp98221</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: dotnet6-build, CleanStart: dotnet6-runtime&lt;/p&gt;
&lt;p&gt;CVE-2022-30184 affects multiple packages. . See references for individual vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: dotnet6-build, CleanStart: dotnet6-runtime&lt;/p&gt;
&lt;p&gt;CVE-2022-30184 affects multiple packages. . See references for individual vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2024-hp98221</guid>
    </item>
    <item>
      <title>EUVD-2026-219988</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-219988</link>
      <description>EUVD-2026-219988</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-219988</guid>
    </item>
    <item>
      <title>fkie_cve-2022-30184</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-30184</link>
      <description>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-30184</guid>
    </item>
    <item>
      <title>GHSA-3885-8gqc-3wpf — Potential leak of NuGet.org API key</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3885-8gqc-3wpf</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: NuGet.Commands, NuGet: NuGet.CommandLine, NuGet: NuGet.CommandLine.XPlat&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 6.0 and .NET Core 3.1, NuGet (NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat version range from 3.5.0 to 6.2.0). This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.&lt;/p&gt;
&lt;p&gt;A vulnerability exists in .NET 6.0, .NET Core 3.1, and NuGet (NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat version range from 3.5.0 to 6.2.0) where a nuget.org api key could leak due to an incorrect comparison with a server url.&lt;/p&gt;
&lt;p&gt;### Affected software&lt;/p&gt;
&lt;p&gt;#### NuGet &amp;amp; NuGet Packages&lt;/p&gt;
&lt;p&gt;- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 6.2.0 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 6.0.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.11.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.9.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.7.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 4.9.4 version or earlier.&lt;/p&gt;
&lt;p&gt;#### .NET SDK(s)&lt;/p&gt;
&lt;p&gt;- Any .NET 6.0 application running on .NET 6.0.5 or earlier.
- Any .NET 3.1 application running on .NET Core 3.1.25 or earlier.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;- If you&amp;#39;re using NuGet.exe 6.2.0 or low…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: NuGet.Commands, NuGet: NuGet.CommandLine, NuGet: NuGet.CommandLine.XPlat&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 6.0 and .NET Core 3.1, NuGet (NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat version range from 3.5.0 to 6.2.0). This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.&lt;/p&gt;
&lt;p&gt;A vulnerability exists in .NET 6.0, .NET Core 3.1, and NuGet (NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat version range from 3.5.0 to 6.2.0) where a nuget.org api key could leak due to an incorrect comparison with a server url.&lt;/p&gt;
&lt;p&gt;### Affected software&lt;/p&gt;
&lt;p&gt;#### NuGet &amp;amp; NuGet Packages&lt;/p&gt;
&lt;p&gt;- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 6.2.0 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 6.0.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.11.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.9.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 5.7.1 version or earlier.
- Any NuGet.exe, NuGet.Commands, NuGet.CommandLine, NuGet.CommandLine.XPlat 4.9.4 version or earlier.&lt;/p&gt;
&lt;p&gt;#### .NET SDK(s)&lt;/p&gt;
&lt;p&gt;- Any .NET 6.0 application running on .NET 6.0.5 or earlier.
- Any .NET 3.1 application running on .NET Core 3.1.25 or earlier.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;- If you&amp;#39;re using NuGet.exe 6.2.0 or low…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3885-8gqc-3wpf</guid>
    </item>
    <item>
      <title>gsd-2022-30184</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-30184</link>
      <description>gsd-2022-30184</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-30184</guid>
    </item>
    <item>
      <title>ICSA-23-320-12 — Siemens PNI</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-12</link>
      <description>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability. zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference). NuGet Client Elevation of Privilege Vulnerability. .NET and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET DLL Hijacking Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability. zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference). NuGet Client Elevation of Privilege Vulnerability. .NET and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET DLL Hijacking Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-12</guid>
    </item>
    <item>
      <title>msrc_CVE-2022-30184 — .NET and Visual Studio Information Disclosure Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2022-30184</link>
      <description>msrc_CVE-2022-30184</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2022-30184</guid>
    </item>
    <item>
      <title>RHSA-2022:5046 — Red Hat Security Advisory: .NET 6.0 security and bugfix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:5046</link>
      <description>&lt;p&gt;dotnet: NuGet Credential leak due to loss of control of third party symbol server domain&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;dotnet: NuGet Credential leak due to loss of control of third party symbol server domain&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:5046</guid>
    </item>
    <item>
      <title>RHSA-2022:5047 — Red Hat Security Advisory: .NET 6.0 on RHEL 7 security and bugfix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:5047</link>
      <description>&lt;p&gt;dotnet: NuGet Credential leak due to loss of control of third party symbol server domain&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;dotnet: NuGet Credential leak due to loss of control of third party symbol server domain&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:5047</guid>
    </item>
  </channel>
</rss>
