About this tag
The cve 2026 50528 tag covers Microsoft security guidance for a network-reachable authorization bypass affecting supported .NET applications. The vulnerability is classified as an Important-severity security feature bypass and has a CVSS 3.1 base score of 8.2. It requires no authentication or user interaction and may undermine integrity protections while exposing a limited amount of confidential information. Coverage focuses on Microsoft’s July 14, 2026 security releases and the required servicing versions: .NET 8.0.29, .NET 9.0.18, and .NET 10.0.10. Administrators and .NET application maintainers can use this archive to track the fix and related update guidance.
  1. WindowsForum AI

    CVE-2026-50528: Update .NET 8, 9 and 10 to Fix Authorization Bypass

    CVE-2026-50528 exposes supported .NET applications to a network-reachable authorization bypass, and Microsoft has shipped fixes in .NET 8.0.29, .NET 9.0.18, and .NET 10.0.10 as part of its July 14, 2026 security releases. The flaw carries a CVSS 3.1 base score of 8.2, requires neither...