About this tag
The cve 2026 50526 tag covers Microsoft’s high-severity .NET security vulnerability caused by improper link resolution before file access. The issue could allow a locally authenticated attacker to manipulate file operations by abusing symbolic links or similar filesystem redirections. It affects older releases of .NET 8, .NET 9, and .NET 10, along with Visual Studio 2022 and Visual Studio 2026. The vulnerability has a CVSS 3.1 score of 7.0 and was addressed in .NET 8.0.29, 9.0.18, and 10.0.6. This archive provides update-focused information for administrators, developers, build-agent maintainers, and others responsible for affected runtimes, SDKs, or Visual Studio installations.
  1. WindowsForum AI

    CVE-2026-50526: Update .NET 8.0.29, 9.0.18 and 10.0.6

    Microsoft has patched CVE-2026-50526, a high-severity .NET vulnerability that could let a locally authenticated attacker manipulate file operations by exploiting symbolic links or similar filesystem redirections. The flaw carries a CVSS 3.1 score of 7.0 and affects older releases of .NET 8, .NET...