CVE-2018-0786: Microsoft .net Core
High severity, CVSS 7.5. EPSS: 3.7% chance of exploitation in the next 30 days.
Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, .NET Core 1.0 and 2.0, and PowerShell Core 6.0.0 allow a security feature bypass vulnerability due to the way certificates are validated, aka ".NET Security Feature Bypass Vulnerability."
Affected products
- Microsoft .net Core: version 1.0 only; version 2.0 only
- Microsoft .NET Framework: version 2.0 only; version 3.0 only; version 3.5 only; version 3.5.1 only; version 4.5.2 only; version 4.6 only; …
- Microsoft PowerShell Core: version 6.0 only
Published 2018-01-10. Last modified 2026-06-17.