CVE-2023-21808: Microsoft .net

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

.NET and Visual Studio Remote Code Execution Vulnerability

Affected products

  • Microsoft .net: version 6.0.0 only; version 7.0.0 only
  • Microsoft .NET Framework: version 3.5 only; version 4.8 only; version 4.7.2 only; version 4.8.1 only; version 4.6.2 only; version 4.7 only; …
  • Microsoft Visual Studio 2017: from 15.0, before 15.9.51 (fixed in 15.9.51)
  • Microsoft Visual Studio 2019: from 16.0, before 16.11.24 (fixed in 16.11.24)
  • Microsoft Visual Studio 2022: version 17.0 only; version 17.2 only; version 17.4 only

Published 2023-02-14. Last modified 2026-08-19.