# Dependency Vulnerabilities * [GHSA-23rf-6693-g89p (2026-07-30)](ghsa-23rf-6693-g89p.md) * Microsoft Security Advisory CVE-2026-50648 – .NET Denial of Service Vulnerability * [GHSA-8q5v-6pqq-x66h (2026-07-30)](ghsa-8q5v-6pqq-x66h.md) * Microsoft Security Advisory CVE-2026-50525 – .NET Denial of Service Vulnerability * [GHSA-464c-974j-9xm6 (2026-07-30)](ghsa-464c-974j-9xm6.md) * AWS CDK CodeBuild S3 Log Encryption Boolean Inversion * [GHSA-cvvh-rhrc-wg4q (2026-07-30)](ghsa-cvvh-rhrc-wg4q.md) * Microsoft Security Advisory CVE-2026-47302 – .NET Denial of Service Vulnerability * [GHSA-g8r8-53c2-pm3f (2026-07-30)](ghsa-g8r8-53c2-pm3f.md) * Microsoft Security Advisory CVE-2026-47304 – .NET Security Feature Bypass Vulnerability * [GHSA-mmjf-rqrv-855v (2026-07-30)](ghsa-mmjf-rqrv-855v.md) * Microsoft Security Advisory CVE-2026-50527 – .NET Denial of Service Vulnerability * [GHSA-6c8g-7p36-r338 (2026-05-06)](ghsa-6c8g-7p36-r338.md) * SharpCompress has directory traversal via directory entries in WriteToDirectory (zip slip variant) * [GHSA-pggp-6c3x-2xmx (2026-04-28)](ghsa-pggp-6c3x-2xmx.md) * Snappier has an infinite loop during SnappyStream decompression with malformed framed input * [GHSA-4625-4j76-fww9 (2026-04-27)](ghsa-4625-4j76-fww9.md) * OpenTelemetry's disk retry default temp path enables local blob injection via OTLP Exporter * [GHSA-g94r-2vxg-569j (2026-04-23)](ghsa-g94r-2vxg-569j.md) * OpenTelemetry dotnet: Excessive memory allocation when parsing OpenTelemetry propagation headers * [GHSA-q834-8qmm-v933 (2026-04-23)](ghsa-q834-8qmm-v933.md) * OpenTelemetry dotnet: OTLP exporter reads unbounded HTTP response bodies * [GHSA-mr8r-92fq-pj8p (2026-04-23)](ghsa-mr8r-92fq-pj8p.md) * OpenTelemetry dotnet: Unbounded `grpc-status-details-bin` parsing in OTLP/gRPC retry handling * [GHSA-g4vj-cjjj-v7hg (2026-04-14)](ghsa-g4vj-cjjj-v7hg.md) * Defense in Depth update for NuGet Client * [GHSA-w3x6-4m5h-cxqf (2026-04-14)](ghsa-w3x6-4m5h-cxqf.md) * Microsoft Security Advisory CVE-2026-26171 - .NET Denial of Service Vulnerability * [GHSA-37gx-xxp4-5rgx (2026-04-14)](ghsa-37gx-xxp4-5rgx.md) * Microsoft Security Advisory CVE-2026-33116 - .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability * [GHSA-9cvc-h2w8-phrp (2026-01-08)](ghsa-9cvc-h2w8-phrp.md) * AWS SDK for .NET V4 adopted defense in depth enhancement for region parameter value * [Security Advisory (2022-12-06)](cryptography-xml-vulnerability.md) * System.Security.Cryptography.Xml vulnerability (CVE-2022-34716) in NServiceBus