{"id":"GHSA-fcpv-w245-r2q7","aliases":[],"url":"https://o3.security/vulnerability/GHSA-fcpv-w245-r2q7","summary":"DotNetNuke.Core security code analysis rules triggered","details":"The codebase raises code analysis warnings related to security, including CA3075, CA5366, CA5371, CA5368, CA5369, CA5372, CA5379, CA5350, and CA5351.\n\nMost of these deal with disabling DTD processing in XML documents, but also includes cryptographic algorithm choices.","published":"2026-04-14T23:33:30Z","modified":"2026-04-14T23:50:49.231655Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"NuGet","name":"DotNetNuke.Core","fixedVersion":"10.2.2"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/dnnsoftware/Dnn.Platform/security/advisories/GHSA-fcpv-w245-r2q7"},{"type":"PACKAGE","url":"https://github.com/dnnsoftware/Dnn.Platform"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-04-14T23:50:49.231655Z"}}