dotnet-targeting-pack-3.1 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the dotnet-targeting-pack-3.1 package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Information Exposure Through Caching

<0:3.1.30-1.el8_6
  • M
Resource Exhaustion

<0:3.1.29-1.el8_6
  • M
XML External Entity (XXE) Injection

<0:3.1.28-1.el8_6
  • M
Improper Cross-boundary Removal of Sensitive Data

<0:3.1.26-1.el8_6
  • L
Cross-site Scripting (XSS)

*
  • M
Exposure of Private Information ('Privacy Violation')

<0:3.1.28-1.el8_6
  • H
Incorrect Behavior Order: Early Validation

<0:3.1.25-1.el8_6
  • H
Reliance on Cookies without Validation and Integrity Checking

<0:3.1.25-1.el8_6
  • H
Allocation of Resources Without Limits or Throttling

<0:3.1.25-1.el8_6
  • M
Improper Use of Validation Framework

*
  • H
Buffer Overflow

<0:3.1.23-1.el8_5
  • H
Improper Use of Validation Framework

<0:3.1.23-1.el8_5
  • M
Improper Handling of Case Sensitivity

<0:3.1.24-1.el8_5
  • M
Information Exposure

*
  • M
Open Redirect

*
  • H
Information Exposure Through Log Files

<0:3.1.18-1.el8_4
  • H
Incorrect Permission Assignment for Critical Resource

<0:3.1.18-1.el8_4
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:3.1.18-1.el8_4
  • H
Missing Release of Resource after Effective Lifetime

<0:3.1.16-1.el8_4
  • H
Improper Check for Dropped Privileges

<0:3.1.15-1.el8_4
  • H
Improper Handling of Length Parameter Inconsistency

<0:3.1.23-1.el8_5
  • H
Out-of-Bounds

<0:3.1.13-1.el8_3
  • H
Uncontrolled Recursion

<0:3.1.12-1.el8_3
  • H
Deadlock

<0:3.1.11-1.el8_3
  • H
Reliance on Untrusted Inputs in a Security Decision

<0:3.1.8-2.el8_2
  • H
Resource Exhaustion

<0:3.1.7-1.el8_2
  • C
Deserialization of Untrusted Data

<0:3.1.6-1.el8_2
  • H
Resource Exhaustion

<0:3.1.4-2.el8_2
  • H
Improper Input Validation

<0:3.1.4-2.el8_2