Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug

Microsoft has released out-of-band updates to address a security vulnerability in ASP.NET Core that could allow an attacker to escalate privileges. The vulnerability, tracked as CVE-2026-40372, carries a CVSS score of 9.1 out of 10.0. It's rated Important in severity. An anonymous researcher has bee
ORIGINAL SOURCE โvia The Hacker News
ADVERTISEMENT
โก STAY AHEAD
Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.
GET THE SUNDAY BRIEFING โRELATED ยท cyber
- [CYBER] ๐ pear: Kinsmen TeleMiracle
- [CYBER] New GoGra malware for Linux uses Microsoft Graph API for comms
- [CYBER] Mirai Botnet Targets Flaw in Discontinued D-Link Routers
- [CYBER] France's 'Secure' ID agency probes breach as crooks claim 19M records
- [CYBER] Progress Software fixes sneaky WAF bypass vulnerability (CVE-2026-21876)
- [CYBER] Guidance on Certifications