dotnet9-runtime

Direct Vulnerabilities

Known vulnerabilities in the dotnet9-runtime package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Unchecked Input for Loop Condition

<9.0.20-r0
  • H
Out-of-bounds Write

<9.0.20-r0
  • H
Integer Overflow or Wraparound

<9.0.20-r0
  • H
Use After Free

<9.0.20-r0
  • H
Arbitrary Code Injection

<9.0.20-r0
  • H
Heap-based Buffer Overflow

<9.0.20-r0
  • H
Unchecked Return Value

<9.0.20-r0
  • M
Protection Mechanism Failure

<9.0.20-r0
  • M
Origin Validation Error

<9.0.20-r0
  • H
Heap-based Buffer Overflow

<9.0.20-r0
  • H
Heap-based Buffer Overflow

<9.0.20-r0
  • M
Improper Handling of Highly Compressed Data (Data Amplification)

<9.0.20-r0
  • M
HTTP Request Smuggling

<9.0.20-r0
  • M
Improper Cross-boundary Removal of Sensitive Data

<9.0.20-r0
  • H
Heap-based Buffer Overflow

<9.0.20-r0
  • H
Heap-based Buffer Overflow

<9.0.20-r0
  • C
Insufficient Verification of Data Authenticity

<9.0.18-r0
  • M
Link Following

<9.0.18-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.18-r0
  • H
Improper Validation of Specified Type of Input

<9.0.18-r0
  • M
Improper Encoding or Escaping of Output

<9.0.18-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.18-r0
  • H
Authentication Bypass

<9.0.18-r0
  • H
LDAP Injection

<9.0.18-r0
  • L
CVE-2026-56158

<9.0.18-r0
  • H
Deserialization of Untrusted Data

<9.0.18-r0
  • H
Arbitrary Code Injection

<9.0.18-r0
  • H
Deserialization of Untrusted Data

<9.0.18-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<9.0.18-r0
  • H
Stack-based Buffer Overflow

<9.0.18-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.18-r0
  • H
Incorrect Implementation of Authentication Algorithm

<9.0.18-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.18-r0
  • M
Link Following

<9.0.17-r0
  • H
Resource Exhaustion

<9.0.17-r0
  • H
Improper Authorization

<9.0.17-r0
  • H
Improper Input Validation

<9.0.16-r0
  • H
Improper Input Validation

<9.0.16-r0
  • M
Directory Traversal

<9.0.16-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<9.0.16-r0
  • H
Improper Input Validation

<9.0.15-r0
  • M
Protection Mechanism Failure

<9.0.15-r0
  • H
Improper Neutralization of Special Elements

<9.0.15-r0
  • H
Resource Exhaustion

<9.0.15-r0
  • H
Out-of-bounds Read

<9.0.14-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.14-r0
  • H
Improper Handling of Missing Special Element

<9.0.13-r0
  • C
HTTP Request Smuggling

<9.0.10-r0
  • M
Inadequate Encryption Strength

<9.0.10-r0
  • H
Link Following

<9.0.10-r0
  • H
Untrusted Search Path

<9.0.6-r0
  • H
CVE-2025-24070

<9.0.3-r0
  • H
Allocation of Resources Without Limits or Throttling

<9.0.4-r0
  • H
Buffer Over-read

<9.0.1-r0
  • H
Heap-based Buffer Overflow

<9.0.1-r0
  • H
CVE-2025-21173

<9.0.1-r0
  • H
CVE-2025-21172

<9.0.1-r0
  • H
External Control of File Name or Path

<9.0.5-r0