Review reviewHigh
CVE-2026-26130
Microsoft ASP.NET Core 10.0, ASP.NET Core 8.0, ASP.NET Core 9.0
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
- CVSS
- 7.5
- EPSS
- 2.82% 85.2% percentile
- CISA KEV
- Not listed
- Published
- 2026.03.11