Jul 2026: .NET Security Feature Bypass Vulnerability
CVE-2026-47304 Published on July 14, 2026

.NET Security Feature Bypass Vulnerability
Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

Vendor Advisory NVD

Weakness Types

Improper Verification of Cryptographic Signature

The software does not verify, or incorrectly verifies, the cryptographic signature for data.

Insufficient Verification of Data Authenticity

The software does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.


Products Associated with CVE-2026-47304

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2026-47304 are published in these products:

 
 
 
 
 
 
 

Affected Versions

Microsoft .NET 10.0: Microsoft .NET 8.0: Microsoft .NET 9.0: Microsoft .NET Framework 3.5: Microsoft .NET Framework 3.5 AND 4.7.2: Microsoft .NET Framework 3.5 AND 4.8: Microsoft .NET Framework 3.5 AND 4.8.1: Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2: Microsoft .NET Framework 4.8: Microsoft .NET Framework 4.8.1: Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8): Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10): Microsoft Visual Studio 2022 version 17.12: Microsoft Visual Studio 2022 version 17.14: Microsoft Visual Studio 2026 version 18.5: Microsoft Visual Studio 2026 version 18.7:

Exploit Probability

EPSS
0.22%
Percentile
12.13%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.