CVE-2020-1340: Microsoft Nugetgallery

Medium severity, CVSS 5.4. EPSS: 1.6% chance of exploitation in the next 30 days.

A spoofing vulnerability exists when the NuGetGallery does not properly sanitize input on package metadata values, aka 'NuGetGallery Spoofing Vulnerability'.

Affected products

  • Microsoft Nugetgallery: before 2020.06.09 (fixed in 2020.06.09)

Published 2020-06-09. Last modified 2026-06-17.