Today's Core Dump is brought to you by ThreatPerspective

The Register - Security

Microsoft kills 9.9-rated ASP.NET Core bug 'our highest ever' score

Flaw in Kestrel web server allowed request smuggling, impact depends on hosting setup and application code Microsoft has patched an ASP.NET Core vulnerability with a CVSS score of 9.9, which security program manager Barry Dorrans said was "our highest ever." The flaw is in the Kestrel web server component and enables security bypass.

Published: 2025-10-16T13:32:10











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us