🟡 Medium | Source: Microsoft Security Response Center
CVE-2026-50527 is a Denial of Service vulnerability affecting .NET Framework, disclosed via the Microsoft Security Response Centre. The advisory has been updated to revise product information in the Software Update table, though Microsoft notes this is an informational change only with no change to the underlying vulnerability details. Organisations running .NET Framework workloads, including those hosted on Azure, should confirm they are tracking the correct affected product versions.
Security Architect’s Take: Review the updated Software Update table in the MSRC advisory to verify which .NET Framework versions are confirmed affected, and ensure your patch management tooling and Azure Update Manager policies are aligned to the corrected product scope before your next patching cycle.
Original advisory: CVE-2026-50527 .NET Framework Denial of Service Vulnerability