Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

NuGet — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting NuGet. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NuGet serves as the primary package manager for .NET development, enabling developers to integrate pre-built libraries into their applications. Historically, common vulnerabilities include remote code execution through malicious packages, cross-site scripting flaws in package metadata, and privilege escalation via compromised build processes. The platform has faced security incidents where attackers uploaded malicious packages with names similar to legitimate ones, leading to supply chain attacks. While NuGet has implemented features like package verification and mandatory TLS, the 4 CVEs on record highlight ongoing risks in dependency management, particularly around package integrity and secure build practices.

Top products by NuGet: NuGetGallery

This page lists every published CVE security advisory associated with NuGet. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.