Language-ecosystem packages (from OSV) tied to this CVE, with the version that fixes it - the dependency-level detail NVD doesn’t carry.
NuGet
DisCatSharp
HIGH
NuGet
Microsoft.AspNetCore.Mvc
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Abstractions
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.ApiExplorer
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Core
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Cors
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.DataAnnotations
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Formatters.Json
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Formatters.Xml
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Localization
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Razor
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.Razor.Host
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.TagHelpers
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.ViewFeatures
HIGH
fixed in 1.0.4
NuGet
Microsoft.AspNetCore.Mvc.WebApiCompatShim
HIGH
fixed in 1.0.4
NuGet
System.Net.Http
HIGH
fixed in 4.1.2
NuGet
System.Net.Http.WinHttpHandler
HIGH
fixed in 4.0.1
NuGet
System.Net.Security
HIGH
fixed in 4.0.1
NuGet
System.Net.WebSockets.Client
HIGH
fixed in 4.0.1
NuGet
System.Text.Encodings.Web
HIGH
fixed in 4.0.1