mediumCVSS 5.9Vulnerability

GHSA-v3f6-m9j2-437p

### Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-8cp2-47hg-mfgh. This link is maintained to preserve external references. ### Original Description Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Properties

ghsa_id
GHSA-v3f6-m9j2-437p
severity
medium
summary
Duplicate Advisory: Microsoft Security Advisory CVE-2026-69304 – ASP.NET Core Denial of Service Vulnerability
cvss_score
5.9
cve_id
GHSA-v3f6-m9j2-437p
cvss_vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
is_ghsa_only
true
ghsa_published
2026-09-08T18:32:21Z
source_url
https://github.com/advisories/GHSA-v3f6-m9j2-437p
ghsa_updated
2026-09-08T21:14:34Z

Related Entities (4)

HAS_WEAKNESS (1)

[Weakness]Improper Handling of Highly Compressed Data (Data Amplification)

REPORTED_BY (1)

[Source]GitHub Advisory Database

VULNERABLE_TO (1)

[Software]nuget/Microsoft.AspNetCore.Server.IISIntegration

AFFECTS (1)

[Software]nuget/Microsoft.AspNetCore.Server.IISIntegration

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-v3f6-m9j2-437p (CVSS 5.9) — Ninja Signal Threat Intelligence | Ninja Signal