Patch tracker / Products / ASP.NET Core 9.0
ASP.NET Core 9.0: vulnerabilities and security updates
Every CVE affecting ASP.NET Core 9.0 and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.
CVEs
4
Updates (KBs)
2
Actively exploited (KEV)
0
Critical Severity
2
CVEs affecting ASP.NET Core 9.0
| CVE | Severity | CVSS | EPSS | Status |
|---|---|---|---|---|
| CVE-2025-55315 | Critical | 9.9 | 66% | - |
| CVE-2025-55248 | Critical | 9.9 | 66% | - |
| CVE-2025-55247 | High | 7.3 | 66% | - |
| CVE-2025-24070 | High | 7.0 | 1.0% | - |
Updates (KBs) for ASP.NET Core 9.0
Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.
Most searched on Senserva right now
KB5122876 install notes and severity
KB5126052: the full CVE list
KB5122882: patch details
KB5123099: the full CVE list
KB5120708 download and what it fixes
KB5122871 install notes and severity
KB5129235 install notes and severity
KB5122878: patch details
KB5120238 download and what it fixes
KB5129238 download and what it fixes