Net
This hub aggregates every CVE we track for Net, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
150
CVEs tracked
6
Critical
109
High
2
In CISA KEV
Severity distribution
HIGH109MEDIUM35CRITICAL6
Monthly trend
0
4
2
0
4
0
0
2
1
1
0
1
3
2
0
0
0
2
3
7
17
8
17
3
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Net.
- CVE-2026-18092Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via XML signature wrapping because new_from_xml reads assertion identity with document-wide XPath instead of the signed subtree8.1
- CVE-2026-18108Net::SAML2 versions before 0.86 for Perl allow authentication bypass because _verify_encrypted_assertion accepts an EncryptedAssertion whose decrypted content carries no signature9.8
- CVE-2026-18089Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-embedded certificate in verify_xml when no trust anchor is configured7.5
- CVE-2026-50659.NET Spoofing Vulnerability6.5
- CVE-2026-50651.NET Denial of Service Vulnerability7.5
- CVE-2026-50650.NET Framework Elevation of Privilege Vulnerability7.8
- CVE-2026-50649.NET Remote Code Execution Vulnerability7.8
- CVE-2026-50648.NET Framework Denial of Service Vulnerability7.5
- CVE-2026-50528.NET Security Feature Bypass Vulnerability8.2
- CVE-2026-50646.NET Framework Remote Code Execution Vulnerability7.8
- CVE-2026-50527.NET Framework Denial of Service Vulnerability7.5
- CVE-2026-50525.NET Denial of Service Vulnerability7.5
- CVE-2026-50526.NET Tampering Vulnerability7.0
- CVE-2026-50524.NET Framework Denial of Service Vulnerability7.5
- CVE-2026-47304.NET Security Feature Bypass Vulnerability8.1
Product normalization is registry-driven with AI assist and human review. How it works