CVE-2023-36435: Microsoft .net

High severity, CVSS 7.5. EPSS: 5.5% chance of exploitation in the next 30 days.

Microsoft QUIC Denial of Service Vulnerability

Affected products

  • Microsoft .net: from 7.0.0, up to and including 7.0.12
  • Microsoft Windows 11 21h2: before 10.0.22000.2538 (fixed in 10.0.22000.2538)
  • Microsoft Windows 11 22h2: before 10.0.22621.2428 (fixed in 10.0.22621.2428)
  • Microsoft Windows Server 2022: affected versions not specified

Published 2023-10-10. Last modified 2026-06-17.