ReviewHigh
CVE-2026-62898
Microsoft .NET 10.0, .NET 8.0, .NET 9.0
Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
- CVSS
- 7.5
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.08.12
Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
The CVSS severity warrants an early asset and exposure review.
Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
Confirm exposure before applying a vendor-supported change.
Confirm that Microsoft .NET 10.0, .NET 8.0, .NET 9.0 and an affected version are present.
Combine exploitation signals with asset exposure and business criticality.
Follow the vendor advisory or supported update path and preserve rollback options.
Recheck the version, service health, access paths, and relevant logs.