pkg:Bitnami/aspnet-core

20 total CVEsCRITICAL2HIGH15MEDIUM3

✅ Check your installed version

All known vulnerabilities

  • HIGH7.5CVE-2023-38180⚠ KEV.NET Denial of Service Vulnerability
    >= 2.1.0, < 2.1.40
  • MEDIUM5.3CVE-2023-44487⚠ KEVnghttp2 - security update
    >= 6.0.0, < 6.0.23, >= 7.0.0, < 7.0.12
  • CRITICAL9.9CVE-2025-55315Microsoft Security Advisory CVE-2025-55315: .NET Security Feature Bypass Vulnerability
    >= 2.3.0, < 2.3.6, >= 8.0.0, < 8.0.21, >= 9.0.0, < 9.0.10
  • CRITICAL9.1CVE-2026-40372Microsoft Security Advisory CVE-2026-40372 – ASP.NET Core Elevation of Privilege
    >= 10.0.0, < 10.0.7
  • HIGH8.8CVE-2020-0603Remote code execution in ASP.NET Core
    >= 2.1.0, < 2.1.1, >= 3.0.0, < 3.0.1, >= 3.1.0, < 3.1.1
  • HIGH7.8CVE-2021-43877ASP.NET Core and Visual Studio Elevation of Privilege Vulnerability
    >= 3.1.0, < 3.1.1, >= 5.0.0, < 5.0.1, >= 6.0.0, < 6.0.1
  • HIGH7.5CVE-2026-26130ASP.NET Core Denial of Service Vulnerability
    >= 8.0.0, < 8.0.25, >= 9.0.0, < 9.0.14, >= 10.0.0, < 10.0.4
  • HIGH7.5CVE-2025-26682ASP.NET Core and Visual Studio Denial of Service Vulnerability
    >= 8.0.0, < 8.0.15, >= 9.0.0, < 9.0.4
  • HIGH7.5CVE-2023-36038ASP.NET Core Denial of Service Vulnerability
    >= 8.0.0, < 8.0.1
  • HIGH7.5CVE-2024-21404.NET Denial of Service Vulnerability
    >= 6.0.0, < 6.0.27, >= 7.0.0, < 7.0.16, >= 8.0.0, < 8.0.2
  • HIGH7.5CVE-2024-21386Microsoft Security Advisory CVE-2024-21386: .NET Denial of Service Vulnerability
    >= 6.0.0, < 6.0.27, >= 7.0.0, < 7.0.16, >= 8.0.0, < 8.0.2
  • HIGH7.5CVE-2021-1723ASP.NET Core and Visual Studio Denial of Service Vulnerability
    >= 3.1.0, < 3.1.11, >= 5.0.0, < 5.0.2
  • HIGH7.5CVE-2020-1045Microsoft ASP.NET Core Security Feature Bypass Vulnerability
    >= 3.1.0, < 3.1.8
  • HIGH7.5CVE-2020-1597ASP.NET Core Denial of Service Vulnerability
    >= 2.1.0, < 2.1.1, >= 3.1.0, < 3.1.1
  • HIGH7.5CVE-2020-1161ASP.NET Core Denial of Service Vulnerability
    >= 3.1.0, < 3.1.1
  • HIGH7.5CVE-2020-0602Denial of service in ASP.NET Core
    >= 2.1.0, < 2.1.1, >= 3.0.0, < 3.0.1, >= 3.1.0, < 3.1.1
  • HIGH7.1CVE-2023-35391ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability
    >= 2.1.0, < 2.1.40
  • HIGH7.0CVE-2025-24070Microsoft Security Advisory CVE-2025-24070: .NET Elevation of Privilege Vulnerability
    >= 8.0.0, < 8.0.14, >= 9.0.0, < 9.0.3
  • MEDIUM6.2CVE-2023-36558ASP.NET Core Security Feature Bypass Vulnerability
    >= 6.0.0, < 6.0.25, >= 7.0.0, < 7.0.14, >= 8.0.0, < 8.0.1
  • MEDIUM5.5CVE-2021-34532ASP.NET Core and Visual Studio Information Disclosure Vulnerability
    >= 2.1.0, < 2.1.3, >= 3.1.0, < 3.1.18, >= 5.0.0, < 5.0.9