Known vulnerabilities in dotnet8.0 (Red Hat package)
Vendor:
Red Hat Inc.
Software:
dotnet8.0 (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:dotnet8_0_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
19
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
8.0.130-1.el10_2
8.0.130-1.el8_10
8.0.128-1.el9_6
8.0.128-1.el10_0
8.0.128-1.el10_2
8.0.128-1.el8_10
8.0.127-1.el9_4
8.0.127-1.el10_0
8.0.127-1.el9_8
8.0.127-1.el8_10
8.0.127-1.el10_2
8.0.126-1.el9_4
8.0.126-1.el9_6
8.0.126-1.el10_0
8.0.125-1.el10_0
8.0.125-1.el9_6
8.0.125-1.el9_4
8.0.126-1.el10_1
8.0.126-1.el9_7
8.0.126-1.el8_10
8.0.125-1.el8_10
8.0.125-1.el9_7
8.0.125-1.el10_1
8.0.121-1.el10_0
8.0.121-1.el9_4
8.0.121-1.el9_6
8.0.121-1.el8_10
8.0.117-1.el9_6
8.0.117-1.el10_0
8.0.117-1.el8_10
8.0.116-1.el10_0
8.0.116-1.el9_6
8.0.116-1.el8_10
8.0.114-1.el8_10
8.0.114-1.el9_5
8.0.114-1.el9_4
Vulnerabilities (19)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU141795 - Unchecked Return Value CVE-2026-62909 |
CWE-252 | Low | 8.0.130-1.el8_10, 8.0.130-1.el10_0, 8.0.130-1.el10_2 | 12.08.2026 |
SB20260812233 SB2026081360 SB2026081364 and 11 more |
||
| #VU141792 - Unchecked Input for Loop Condition CVE-2026-62901 |
CWE-606 | Medium | 8.0.130-1.el8_10, 8.0.130-1.el10_0, 8.0.130-1.el10_2 | 12.08.2026 |
SB20260812233 SB2026081360 SB2026081364 and 11 more |
||
| #VU141791 - Improper Removal of Sensitive Information Before Storage or Transfer CVE-2026-62900 |
CWE-212 | Medium | 8.0.130-1.el8_10, 8.0.130-1.el10_0, 8.0.130-1.el10_2 | 12.08.2026 |
SB20260812233 SB2026081360 SB2026081364 and 11 more |
||
| #VU141790 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2026-62899 |
CWE-444 | Medium | 8.0.130-1.el8_10, 8.0.130-1.el10_0, 8.0.130-1.el10_2 | 12.08.2026 |
SB20260812233 SB2026081360 SB2026081364 and 11 more |
||
| #VU134477 - Resource exhaustion CVE-2026-45591 |
CWE-400 | Medium | 8.0.128-1.el8_10, 8.0.128-1.el9_6, 8.0.128-1.el10_0, 8.0.128-1.el10_2 | 12.06.2026 |
SB2026061277 SB2026061283 SB2026061284 and 10 more |
||
| #VU134117 - Improper Link Resolution Before File Access ('Link Following') CVE-2026-45491 |
CWE-59 | Low | 8.0.128-1.el8_10, 8.0.128-1.el9_6, 8.0.128-1.el10_0, 8.0.128-1.el10_2 | 09.06.2026 |
SB2026060968 SB2026061283 SB2026061284 and 10 more |
||
| #VU131346 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2026-42899 |
CWE-835 | Medium | 8.0.127-1.el8_10, 8.0.127-1.el9_4, 8.0.127-1.el9_8, 8.0.127-1.el10_0, 8.0.127-1.el10_2 | 13.05.2026 |
SB2026051375 SB2026051478 SB2026051479 and 15 more |
||
| #VU128353 - Resource exhaustion CVE-2026-34043 |
CWE-400 | Medium | 8.0.127-1.el8_10, 8.0.127-1.el9_4, 8.0.127-1.el9_8, 8.0.127-1.el10_0, 8.0.127-1.el10_2 | 28.04.2026 |
SB20260428183 SB2026052719 SB2026052720 and 7 more |
||
| #VU126242 - Stack-based buffer overflow CVE-2026-32203 |
CWE-121 | Medium | 8.0.126-1.el8_10, 8.0.126-1.el9_4, 8.0.126-1.el9_6, 8.0.126-1.el9_7, 8.0.126-1.el10_0, 8.0.126-1.el10_1 | 15.04.2026 |
SB20260415155 SB2026041655 SB2026041656 and 19 more |
||
| #VU126233 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2026-33116 |
CWE-835 | Medium | 8.0.126-1.el8_10, 8.0.126-1.el9_4, 8.0.126-1.el9_6, 8.0.126-1.el9_7, 8.0.126-1.el10_0, 8.0.126-1.el10_1 | 15.04.2026 |
SB20260415152 SB2026041655 SB2026041656 and 19 more |
||
| #VU126231 - Improper Neutralization of Special Elements CVE-2026-32178 |
CWE-138 | Medium | 8.0.126-1.el8_10, 8.0.126-1.el9_4, 8.0.126-1.el9_6, 8.0.126-1.el9_7, 8.0.126-1.el10_0, 8.0.126-1.el10_1 | 15.04.2026 |
SB20260415151 SB2026041655 SB2026041656 and 19 more |
||
| #VU126230 - Resource exhaustion CVE-2026-26171 |
CWE-400 | Medium | 8.0.126-1.el8_10, 8.0.126-1.el9_4, 8.0.126-1.el9_6, 8.0.126-1.el9_7, 8.0.126-1.el10_0, 8.0.126-1.el10_1 | 15.04.2026 |
SB20260415151 SB2026041655 SB2026041656 and 19 more |
||
| #VU123769 - Allocation of Resources Without Limits or Throttling CVE-2026-26130 |
CWE-770 | Medium | 8.0.125-1.el8_10, 8.0.125-1.el9_4, 8.0.125-1.el9_6, 8.0.125-1.el9_7, 8.0.125-1.el10_0, 8.0.125-1.el10_1 | 10.03.2026 |
SB20260310118 SB2026031224 SB2026031227 and 19 more |
||
| #VU117273 - Improper Link Resolution Before File Access ('Link Following') CVE-2025-55247 |
CWE-59 | Low | 8.0.121-1.el8_10, 8.0.121-1.el9_4, 8.0.121-1.el9_6, 8.0.121-1.el10_0 | 15.10.2025 |
SB20251015122 SB20251015138 SB20251015139 and 9 more |
||
| #VU117236 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2025-55315 |
CWE-444 | Medium | 8.0.121-1.el8_10, 8.0.121-1.el9_4, 8.0.121-1.el9_6, 8.0.121-1.el10_0 | 15.10.2025 |
SB2025101593 SB20251015138 SB20251015139 and 9 more |
||
| #VU117231 - Inadequate Encryption Strength CVE-2025-55248 |
CWE-326 | Medium | 8.0.121-1.el8_10, 8.0.121-1.el9_4, 8.0.121-1.el9_6, 8.0.121-1.el10_0 | 15.10.2025 |
SB2025101588 SB20251015138 SB20251015139 and 9 more |
||
| #VU111028 - Untrusted Search Path CVE-2025-30399 |
CWE-426 | High | 8.0.117-1.el8_10, 8.0.117-1.el9_6, 8.0.117-1.el10_0 | 11.06.2025 |
SB2025061101 SB2025061124 SB2025061126 and 5 more |
||
| #VU109148 - External Control of File Name or Path CVE-2025-26646 |
CWE-73 | Medium | 8.0.116-1.el8_10, 8.0.116-1.el9_6, 8.0.116-1.el10_0 | 13.05.2025 |
SB20250513127 SB2025051438 SB2025051446 and 3 more |
||
| #VU105568 - Improper Authentication CVE-2025-24070 |
CWE-287 | High | 8.0.114-1.el8_10, 8.0.114-1.el9_4, 8.0.114-1.el9_5 | 11.03.2025 |
SB20250311101 SB2025031215 SB2025031778 and 4 more |