- Security Advisory 2022-12-06
- System.Security.Cryptography.Xml vulnerability (CVE-2022-34716) in NServiceBus
- GHSA-9cvc-h2w8-phrp
- AWS SDK for .NET V4 adopted defense in depth enhancement for region parameter value
- GHSA-6c8g-7p36-r338
- SharpCompress has directory traversal via directory entries in WriteToDirectory (zip slip variant)
- GHSA-g94r-2vxg-569j
- OpenTelemetry dotnet: Excessive memory allocation when parsing OpenTelemetry propagation headers
- GHSA-q834-8qmm-v933
- OpenTelemetry dotnet: OTLP exporter reads unbounded HTTP response bodies
- GHSA-4625-4j76-fww9
- OpenTelemetry's disk retry default temp path enables local blob injection via OTLP Exporter
- GHSA-mr8r-92fq-pj8p
- OpenTelemetry dotnet: Unbounded
grpc-status-details-binparsing in OTLP/gRPC retry handling
- OpenTelemetry dotnet: Unbounded
- GHSA-g4vj-cjjj-v7hg
- Defense in Depth update for NuGet Client
- GHSA-pggp-6c3x-2xmx
- Snappier has an infinite loop during SnappyStream decompression with malformed framed input
- GHSA-w3x6-4m5h-cxqf
- Microsoft Security Advisory CVE-2026-26171 - .NET Denial of Service Vulnerability
- GHSA-37gx-xxp4-5rgx
- Microsoft Security Advisory CVE-2026-33116 - .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability