nuget package report

Is System.ServiceModel.Http safe?

2 known vulnerabilities, worst severity HIGH.

cvss
7.5

how bad it is if exploited, out of 10

epss
3.7%

chance of exploitation in the next 30 days

xyz score
3.7

CyberXYZ composite, out of 10

fig. 01 — GHSA-jc8g-xhw5-6x46, the advisory selected below

// advisories

GHSA-jc8g-xhw5-6x46

HIGHCVE-2018-0786

Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, .NET Core 1.0 and 2.0, and PowerShell Core 6.0.0 allow a security feature bypass vulnerability due to the way certificates are validated, aka ".NET Security Feature Bypass Vulnerability."

Affected
= 4.1.0, = 4.3.0, = 4.4.0
Fixed in
4.1.1
Weakness
CWE-295
Published
2018-10-16
Source
github

GHSANVDMITREreferencereferencereferencereference


// ai model usage

Tracked for PyPI packages. HuggingFace models declare Python dependencies, so nuget packages are not covered.


Checked 2026-09-22 at 00:37 UTC. The most recent advisory here was published 2022-05-14. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is System.ServiceModel.Http safe? nuget package security report | CyberXYZ