GHSA-x5qj-9vmx-7g6g
GitHub Security Advisory
Improper Input Validation in .Net Framework API's
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Affected Packages
NuGet
Microsoft.NETCore.App
Affected versions:
2.2.0
(fixed in 2.2.2)
NuGet
Microsoft.NETCore.App
Affected versions:
2.1.0
(fixed in 2.1.8)
NuGet
System.Private.Uri
Affected versions:
4.3.0
(fixed in 4.3.2)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: July 27, 2025 6:35 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.