CVE-2018-14581: Red-Gate .net Reflector

High severity, CVSS 7.8. EPSS: 1.8% chance of exploitation in the next 30 days.

Redgate .NET Reflector before 10.0.7.774 and SmartAssembly before 6.12.5 allow attackers to execute code by decompiling a compiled .NET object (such as a DLL or EXE file) with a specific embedded resource file.

Affected products

  • Red-Gate .net Reflector: before 10.0.7.774 (fixed in 10.0.7.774)
  • Red-Gate Smartassembly: before 6.12.5 (fixed in 6.12.5)

Published 2018-07-31. Last modified 2026-06-17.