Back to Intel

Intel Node

Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug

criticalvulnerability2026-04-22T09:29:00+00:00source excerpt
vulnerabilitycve

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

Microsoft has released out-of-band updates to address a security vulnerability in ASP.NET Core that could allow an attacker to escalate privileges. The vulnerability, tracked as CVE-2026-40372, carries a CVSS score of 9.1 out of 10.0. It's rated Important in severity. An anonymous researcher has been credited with discovering and reporting the flaw.

Read Original Source