目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

MessagePack-CSharp 厂商漏洞列表 / CVE 中文分析 13

MessagePack-CSharp 厂商相关 13 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

本页面聚焦于 MessagePack-CSharp 相关安全漏洞的聚合信息。收录了该库存在的反序列化、内存消耗及输入验证等高危漏洞,时间范围涵盖从早期版本至今的安全公告。通过此页,您可快速追踪厂商发布的安全补丁,深入理解此类反序列化组件的常见弱点机制,或检索特定历史版本的具体风险详情,便于进行合规审计与风险排查。

13 件の結果 / 13フィルターをクリア
上位製品 MessagePack-CSharp: MessagePack-CSharp
CVE IDタイトルCVSS深刻度公開日
CVE-2026-48109 MessagePack-CSharp: LZ4 decompression may fail with AccessViolationException after dereferencing memory from bad input — MessagePack-CSharpCWE-20 8.2 High2026-06-22
CVE-2026-48502 MessagePack-CSharp: Denial of service vulnerabilities can swamp the CPU or crash the process with stack and heap overflows — MessagePack-CSharpCWE-125--2026-06-22
CVE-2026-48506 MessagePack-CSharp: MessagePackReader.Skip can recurse without enforcing maximum object graph depth — MessagePack-CSharpCWE-674 7.5 High2026-06-22
CVE-2026-48509 MessagePack-CSharp: ASP.NET Core MessagePackInputFormatter defaults to TrustedData for HTTP request bodies — MessagePack-CSharpCWE-1188--2026-06-22
CVE-2026-48510 MessagePack-CSharp: LZ4 decompression allocates from unbounded declared output lengths — MessagePack-CSharpCWE-409--2026-06-22
CVE-2026-48511 MessagePack-CSharp: ExpandoObject formatter can perform quadratic insertion work on untrusted maps — MessagePack-CSharpCWE-407--2026-06-22
CVE-2026-48512 MessagePack-CSharp: JSON conversion APIs can recurse without consistent depth enforcement — MessagePack-CSharpCWE-674--2026-06-22
CVE-2026-48513 MessagePack-CSharp: DynamicUnionResolver generated deserializers miss depth enforcement — MessagePack-CSharpCWE-674--2026-06-22
CVE-2026-48514 MessagePack-CSharp: Unity unsafe blit formatter allocates from unbounded byte length — MessagePack-CSharpCWE-770--2026-06-22
CVE-2026-48515 MessagePack-CSharp: Multi-dimensional array formatters allocate from unchecked dimensions — MessagePack-CSharpCWE-770--2026-06-22
CVE-2026-48516 MessagePack-CSharp: InterfaceLookupFormatter bypasses collision-resistant comparer settings — MessagePack-CSharpCWE-407--2026-06-22
CVE-2026-48517 MessagePack-CSharp: Typeless deserialization type restrictions do not recurse into arrays or generic arguments — MessagePack-CSharpCWE-470--2026-06-22
CVE-2024-48924 MessagePack allows untrusted data to lead to DoS attack due to hash collisions and stack overflow — MessagePack-CSharpCWE-328 7.5AIHighAI2024-10-17

本页汇总了 MessagePack-CSharp 厂商截至目前公开的全部 13 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。