CVE-2024-38095: Microsoft .net

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

.NET and Visual Studio Denial of Service Vulnerability

Affected products

  • Microsoft .net: from 8.0.0, before 8.0.7 (fixed in 8.0.7)
  • Microsoft Visual Studio 2022: from 17.4.0, before 17.4.21 (fixed in 17.4.21); from 17.6.0, before 17.6.17 (fixed in 17.6.17); from 17.8.0, before 17.8.12 (fixed in 17.8.12); from 17.10.0, before 17.10.4 (fixed in 17.10.4)

Published 2024-07-09. Last modified 2026-06-17.