Vulnerabilities
Vulnerable Software
Inconsistent interpretation of http requests ('http request/response smuggling') in ASP.NET Core allows an authorized attacker to bypass a security feature over a network.
CVSS Score
9.9
EPSS Score
0.658
Published
2025-10-14
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.026
Published
2025-08-12
Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
8.8
EPSS Score
0.008
Published
2025-07-08
Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code over a network.
CVSS Score
7.1
EPSS Score
0.058
Published
2025-06-13
Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.
CVSS Score
7.5
EPSS Score
0.009
Published
2025-06-13


Contact Us

Shodan ® - All rights reserved