CVE-2024-35264: Microsoft .net

High severity, CVSS 8.1. EPSS: 2.6% chance of exploitation in the next 30 days.

.NET and Visual Studio Remote Code Execution Vulnerability

Affected products

  • Microsoft .net: from 8.0.0, before 8.0.7 (fixed in 8.0.7)
  • Microsoft Visual Studio 2022: from 17.4.0, before 17.4.21 (fixed in 17.4.21); from 17.6.0, before 17.6.17 (fixed in 17.6.17); from 17.8.0, before 17.8.12 (fixed in 17.8.12); from 17.10.0, before 17.10.4 (fixed in 17.10.4)

Published 2024-07-09. Last modified 2026-06-17.