CVE-2026-32177Disclosure(microsoft / .net)

LOWCVSS 7.3 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch microsoft .net systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.

2.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-122CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • .net
  • .net_framework
  • visual_studio_2022
  • visual_studio_2026

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 3 mentions (2026-05-12); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
.net.net_frameworkvisual_studio_2022visual_studio_2026windowswindows_10_1607windows_10_1809windows_10_21h2windows_10_22h2windows_11_22h2

9 versions affected across 19 products

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-05-12: 3Mentions · 2026-05-15: 1PoC Mentioned / Linked · 2026-05-12: 1Patch / Workaround · 2026-05-12: 2Technical Details · 2026-05-12: 3Technical Details · 2026-05-15: 105-1205-15
Signal classification2 categories
Disclosure
250.0%
Patch
250.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-123
Disclosure1Patch2
2026-05-151
Disclosure1
Full discourse4 posts
  • Israel@f1tym1
    Disclosure

    CVE-2026-32177 | Microsoft .NET prior 10.0.8 heap-based overflow (Nessus ID 314680) https://ift.tt/ubnj5UW A vulnerability has been found in Microsoft .NET and classified as problematic. Affected by this vulnerability is an unknown functionality. This manipulation causes heap-…

    Post summary

    A heap‑based overflow vulnerability (CVE-2026-32177) was identified in Microsoft .NET versions prior to 10.0.8, with a Nessus reference, but no PoC, exploit, or patch information was provided.

    0000038
    974 followersView on X
  • America's Pick@nims213
    Patch

    Microsoft May 2026 Patch Tuesday fixes 120 flaws, no zero-days https://ift.tt/CM9d4IR Tag CVE ID CVE Title Severity .NET CVE-2026-35433 .NET Elevation of Privilege Vulnerability Important .NET CVE-2026-32177 .NET Elevation of Privilege Vulnerability Important .NE…

    Post summary

    Microsoft released a Patch Tuesday in May 2026 addressing 120 flaws, including two .NET elevation‑of‑privilege CVEs, with no zero‑days reported.

    0000034
    1.7K followersView on X
  • VulnersHub@VulnersHub
    Disclosure

    CVE-2026-32177 .NET Elevation of Privilege Vulnerability http://dlvr.it/TSVrdm

    Post summary

    The post announces CVE‑2026‑32177, a .NET elevation‑of‑privilege vulnerability, and includes a link to additional content but provides no details on exploitation, mitigation, or active use.

    0000023
    6 followersView on X
  • WindowsForum@windowsforum
    Patch

    🧩 CVE-2026-32177 is the rare EoP where Microsoft’s own record is the warning label. Translation: patch your .NET/VS estate fast or “dev tooling” becomes attacker tooling. #Windows #Security https://windowsforum.com/threads/cve-2026-32177-net-eop-patch-discipline-test-for-developer-and-runtime-estate.417696/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #PrivilegeEscalation #NetSecurity #PatchTuesday #Cve202632177 https://t.co/5ypQC1ueXV

    Post summary

    The tweet alerts that CVE‑2026‑32177 is a rare elevation‑of‑privilege flaw in .NET/VS and urges users to patch quickly to avoid exploitation.

    0000052
    1.1K followersView on X
CPE platform detail32 entries

32 of 32 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoft.net---
Appmicrosoft.net_framework3.5--
Appmicrosoft.net_framework4.6.2--
Appmicrosoft.net_framework4.7--
Appmicrosoft.net_framework4.7.1--
Appmicrosoft.net_framework4.7.2--
Appmicrosoft.net_framework4.8--
Appmicrosoft.net_framework4.8.1--
Appmicrosoftvisual_studio_2022---
Appmicrosoftvisual_studio_2026---
OSmicrosoftwindows---
OSmicrosoftwindows_10_1607--x64
OSmicrosoftwindows_10_1809--arm64
OSmicrosoftwindows_10_1809--x64
OSmicrosoftwindows_10_21h2--arm64
OSmicrosoftwindows_10_21h2--x64
OSmicrosoftwindows_10_22h2--arm64
OSmicrosoftwindows_10_22h2--x64
OSmicrosoftwindows_11_22h2--x64
OSmicrosoftwindows_11_23h2--x64
OSmicrosoftwindows_11_24h2--arm64
OSmicrosoftwindows_11_24h2--x64
OSmicrosoftwindows_11_25h2--arm64
OSmicrosoftwindows_11_25h2--x64
OSmicrosoftwindows_11_26h1--arm64
OSmicrosoftwindows_11_26h1--x64
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2025--x64

Explore more