Know every threat before it ships

200K+ vulnerabilities, malicious packages, and supply chain threats enriched with Corgea's research.

HIGH 8.4
NuGet

CVE-2026-100368

CliInvoke.Specializations has command injection in PowerShell and Cmd shell wrappers

HIGH 8.4
NuGet

CVE-2026-100369

CliInvoke: Argument Injection in Extensibility Runner Factory

HIGH 7.5
NuGet

CVE-2026-81516

Steeltoe.Discovery.Consul: malformed 'secure' metadata aborts service instance lookup (DoS)

HIGH 7.5
NuGet

CVE-2026-81515

Steeltoe.Discovery.Eureka: malformed enum/bool/timestamp field aborts entire registry fetch (DoS)

HIGH 7.5
NuGet

CVE-2026-85756

SSH.NET: ScpClient allows server-side RCE via default SCP path handling

HIGH 7.0
NuGet

CVE-2026-81192

OpenTelemetry.Resources.Host vulnerable to arbitrary code execution via local PATH hijacking on macOS

HIGH 8.8
NuGet

CVE-2026-71328

Microsoft Security Advisory CVE-2026-71328 – .NET and Visual Studio Remote Code Execution Vulnerability

HIGH 7.5
NuGet

CVE-2026-50524

Microsoft Security Advisory CVE-2026-50524 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-47302

Microsoft Security Advisory CVE-2026-47302 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-50651

Microsoft Security Advisory CVE-2026-50651 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-57108

Microsoft Security Advisory CVE-2026-57108 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-50525

Microsoft Security Advisory CVE-2026-50525 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-50648

Microsoft Security Advisory CVE-2026-50648 – .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-26130

.NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-26171

Microsoft Security Advisory CVE-2026-26171 – .NET Denial of Service Vulnerability

HIGH 8.2
NuGet

CVE-2026-50528

Microsoft Security Advisory CVE-2026-50528 – .NET Security Feature Bypass Vulnerability

HIGH 7.5
NuGet

GHSA-vh8f-65qg-3m8j

Duplicate Advisory: .NET Denial of Service Vulnerability

HIGH 8.0
NuGet

CVE-2025-26646

Microsoft.Build.Tasks.Core .NET Spoofing Vulnerability

HIGH 7.5
NuGet

CVE-2026-42899

Microsoft Security Advisory CVE-2026-42899 – ASP.NET Core Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-45591

Microsoft Security Advisory CVE-2026-45591 – ASP.NET Core Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-50527

Microsoft Security Advisory CVE-2026-50527 – .NET Denial of Service Vulnerability

HIGH 8.1
NuGet

CVE-2026-47304

Microsoft Security Advisory CVE-2026-47304 – .NET Security Feature Bypass Vulnerability

HIGH 8.2
NuGet

CVE-2026-48109

MessagePack's LZ4 decompression may fail with AccessViolationException after dereferencing memory from bad input

HIGH 7.5
NuGet

CVE-2026-46522

ImageMagick: Infinite Loop in the MIFF decoder can lead to CPU exhaustion

HIGH 7.5
NuGet

CVE-2026-26127

.NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-33116

Microsoft Security Advisory CVE-2026-33116 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2026-32933

AutoMapper Vulnerable to Denial of Service (DoS) via Uncontrolled Recursion

HIGH 8.2
NuGet

CVE-2026-25794

ImageMagick has heap-buffer-overflow via signed integer overflow in WriteUHDRImage when writing UHDR images with large dimensions

HIGH 8.8
NuGet

CVE-2026-26118

Azure MCP Server has Server-Side Request Forgery issue that allows authorized attacker to elevate privileges over a network

HIGH 7.5
NuGet

GHSA-c8gq-rhqh-wgwm

Duplicate Advisory: .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2025-66628

ImageMagick is vulnerable to an integer Overflow in TIM decoder leading to out of bounds read (32-bit only)

HIGH 7.6
NuGet

CVE-2025-55004

imagemagick: heap-buffer overflow read in MNG magnification with alpha

HIGH 7.5
NuGet

CVE-2025-53015

ImageMagick has XMP profile write that triggers hang due to unbounded loop

HIGH 7.4
NuGet

CVE-2025-53101

ImageMagick has a Stack Buffer Overflow in image.c

HIGH 7.5
NuGet

CVE-2025-30399

Microsoft Security Advisory CVE-2025-30399 | .NET Remote Code Vulnerability

HIGH 7.5
NuGet

CVE-2025-21172

Microsoft Security Advisory CVE-2025-21172 | .NET and Visual Studio Remote Code Execution Vulnerability

HIGH 8.8
NuGet

CVE-2025-21176

Microsoft Security Advisory CVE-2025-21176 | .NET and Visual Studio Remote Code Execution Vulnerability

HIGH 8.1
NuGet

CVE-2025-21171

Microsoft Security Advisory CVE-2025-21171 | .NET Remote Code Execution Vulnerability

HIGH 7.5
NuGet

CVE-2024-38095

Microsoft Security Advisory CVE-2024-38095 | .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2024-43499

.NET Denial of Service Vulnerability

HIGH 8.1
NuGet

CVE-2024-32655

Npgsql vulnerable to SQL Injection via Protocol Message Size Overflow

HIGH 7.5
NuGet

CVE-2024-30105

Microsoft Security Advisory CVE-2024-30105 | .NET Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2024-41131

SixLabors ImageSharp Out-of-bounds Write

HIGH 8.4
NuGet

CVE-2024-41799

tgstation-server's DreamMaker environment files outside the deployment directory can be compiled and ran by insufficiently permissioned users

HIGH 7.3
NuGet

CVE-2024-29187

WiX based installers are vulnerable to binary hijack when run as SYSTEM

HIGH 7.9
NuGet

CVE-2024-29188

Malicious directory junction can cause WiX RemoveFoldersEx to possibly delete elevated files

HIGH 7.1
NuGet

CVE-2024-27929

Use After Free in SixLabors.ImageSharp

HIGH 7.5
NuGet

CVE-2024-28252

CoreWCF NetFraming based services can leave connections open when they should be closed

HIGH 7.1
NuGet

CVE-2023-29337

NuGet Client Remote Code Execution Vulnerability

HIGH 8.2
NuGet

CVE-2024-24810

WiX Toolset's .be TEMP folder is vulnerable to DLL redirection attacks that allow the attacker to escalate privileges

HIGH 7.1
NuGet

CVE-2024-21643

Microsoft.IdentityModel.Protocols.SignedHttpRequest remote code execution vulnerability

HIGH 8.6
NuGet

CVE-2024-23838

TrueLayer.Client SSRF when fetching payment or payment provider

HIGH 7.3
NuGet

CVE-2023-34230

Snowflake Connector .Net Command Injection

HIGH 8.8
NuGet

GHSA-7vpr-3ppw-qrpj

Imageflow affected by libwebp zero-day and should not be used with malicious source images.

HIGH 7.0
NuGet

CVE-2023-28638

Snappier vulnerable to buffer overrun due to improper restriction of operations within the bounds of a memory buffer

HIGH 8.8
NuGet

CVE-2023-0493

Withdrawn Advisory: HTML injections in BTCPayServer

HIGH 7.5
NuGet

CVE-2021-31957

ASP.NET Core Denial of Service Vulnerability

HIGH 7.5
NuGet

CVE-2021-23415

Directory Traversal in elFinder.AspNet

HIGH 7.5
NuGet

CVE-2021-22570

Withdrawn Advisory: NULL Pointer Dereference in Protocol Buffers

HIGH 8.8
NuGet

CVE-2026-69439

Microsoft Security Advisory CVE-2026-69439 – .NET and Visual Studio Elevation of Privilege Vulnerability

Ready to move

Start Securing

Free, no credit card | First findings in minutes