All apps
A

ASP.NET Core Runtime

Runtime
Microsoft·Website

ASP.NET Core runtime for hosting web applications and APIs

Latest versions

Stable
macOSWindowsLinux
10.0.1111 Aug 2026
Current
WindowsmacOSLinux
9.0.1911 Aug 2026
Enterprise Stable
WindowsmacOSLinux
8.0.3011 Aug 2026
Actively exploited
0
CISA KEV · 2 lifetime
Affecting latest
0
v8.0.30
Known CVEs
39
across all versions, as matched by PemSync
Last checked
6 Sep 2026, 0:15

The latest tracked version (8.0.30) is not affected by any matched vulnerability — all 39 recorded CVEs are fixed in versions you're past.

CVESeverityEPSS pctStatusScore source
HIGH 7.5100%Latest not affectedNVD10 Oct 2023
HIGH 7.596%Latest not affectedNVD8 Aug 2023
HIGHvendor83%Latest not affected9 Jun 2026
96%Latest not affected21 Apr 2026
86%Latest not affected10 Mar 2026
99%Latest not affected14 Oct 2025
75%Latest not affected8 Apr 2025
60%Latest not affected11 Mar 2025
85%Latest not affected13 Feb 2024
83%Latest not affected13 Feb 2024
63%Latest not affected14 Nov 2023
85%Latest not affected14 Nov 2023
78%Latest not affected8 Aug 2023
51%Latest not affected15 Dec 2021
66%Latest not affected12 Aug 2021
92%Latest not affected12 Jan 2021
93%Latest not affected11 Sep 2020
93%Latest not affected17 Aug 2020
92%Latest not affected21 May 2020
97%Latest not affected14 Jan 2020
94%Latest not affected14 Jan 2020
91%Latest not affected11 Sep 2019
85%Latest not affected15 Jul 2019
93%Latest not affected16 May 2019
94%Latest not affected9 Apr 2019
Showing 125 of 39
Page 1 of 2

PemSync reports known, cataloged exploited vulnerabilities (CISA KEV) and published CVEs. It is not a zero-day detection or threat-intelligence system — a vulnerability may be exploited before it appears here. Absence of data does not mean an app is secure.

More from Microsoft