Package impact
NuGet / Microsoft.AspNetCore.DataProtection
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-40372 | critical | 9.1 | 9.1 | 1mo ago | Improper verification of cryptographic signature in ASP.NET Core allows an unauthorized attacker to elevate privileges over a network. |