CVE-2025-11573: Amazon Amazon.iondotnet
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
An infinite loop issue in Amazon.IonDotnet library versions <v1.3.2 may allow a threat actor to cause a denial of service through a specially crafted text input. To mitigate this issue, users should upgrade to version v1.3.2. As of August 20, 2025, this library has been deprecated and will not receive further updates.
Affected products
- Amazon Amazon.iondotnet: before 1.3.2 (fixed in 1.3.2)
Published 2025-10-09. Last modified 2026-10-08.