KB5104032: what it fixes and who gets it

KB5104032 is a security update from Microsoft's July 2026 release for .NET 8.0 installed on Linux, .NET 8.0 installed on Mac OS, .NET 8.0 installed on Windows.

Microsoft data read
17CVEs fixed
0rated Critical
0already exploited
Norestart required

Should you install it?

Yes. It is a routine security update; none of its fixes are rated Critical or reported as exploited. Windows Update installs it automatically on supported home PCs.

If the installation fails or the PC misbehaves afterwards, note the exact error code first: the fix depends on it. Our update troubleshooting guides are linked on this page.

Security fixes in KB5104032

CVETypeCVSSSeverity
CVE-2026-47300ASP.NET Core Elevation of Privilege VulnerabilityElevation of Privilege8.8Important
CVE-2026-47303ASP.NET Core Elevation of Privilege VulnerabilityElevation of Privilege8.8Important
CVE-2026-50528.NET Security Feature Bypass VulnerabilitySecurity Feature Bypass8.2Important
CVE-2026-47304.NET Security Feature Bypass VulnerabilitySecurity Feature Bypass8.1Important
CVE-2026-50646.NET Framework Remote Code Execution VulnerabilityRemote Code Execution7.8Important
CVE-2026-50649.NET Remote Code Execution VulnerabilityRemote Code Execution7.8Important
CVE-2026-50650.NET Framework Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-47302.NET Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50524.NET Framework Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50525.NET Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50527.NET Framework Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50648.NET Framework Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50651.NET Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-56170ASP.NET Core Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-57108.NET Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-50526.NET Tampering VulnerabilityTampering7.0Important
CVE-2026-50659.NET Spoofing VulnerabilitySpoofing6.5Important

Questions and experiences

Ask about this page: members and our editors answer. Reading is open; writing needs a free account.

0 comments

…

4,322 members already hereThey read, write, comment and vote. 0 verified · 31 joined this year

Cookies

We use essential cookies to run the platform. Analytics and marketing cookies are only turned on once you consent — you can change your choice at any time.