Loading
External control of file name or path in .NET, Visual Studio, and Build Tools for Visual Studio allows an authorized attacker to perform spoofing over a network.
Use CWE-73, Microsoft vendor hub and Build Tools product page to widen CVE-2025-26646 into its surrounding weakness, vendor, and product context.
Additional editorial context is available in Weekly Security Roundup: Navigating the April 2026 Threat Landscape and Critical Framework Exploits.