Microsoft.SemanticKernel.Core
Semantic Kernel core orchestration, runtime and functions. This package is automatically installed by 'Microsoft.SemanticKernel' package with other useful packages. Install this package manually only if you are selecting individual Semantic Kernel components.
Activity
- Latest release
- 3w ago
- Total releases
- 132
- Cadence
- ~7 days
- Last 12 months
- 16
Details
- License
- MIT
- First release
- Apr 19, 2023
| Version | Released | |
|---|---|---|
1.80.0
minor
|
1.80.0
minor
Dependencies (3)
|
|
1.79.0
minor
|
1.79.0
minor
Dependencies (3)
|
|
1.78.0
minor
|
1.78.0
minor
Dependencies (3)
|
|
1.77.0
minor
|
1.77.0
minor
Dependencies (3)
|
|
1.76.0
minor
|
1.76.0
minor
Dependencies (3)
|
|
1.75.0
minor
|
1.75.0
minor
Dependencies (3)
|
|
1.74.0
minor
|
1.74.0
minor
Dependencies (3)
|
|
1.73.0
minor
|
1.73.0
minor
Dependencies (3)
|
|
1.72.0
minor
|
1.72.0
minor
Dependencies (3)
|
|
1.71.0
minor
|
1.71.0
minor
Dependencies (3)
|
|
1.70.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.70.0
minor
Dependencies (3)
|
|
1.69.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.69.0
minor
Dependencies (3)
|
|
1.68.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.68.0
minor
Dependencies (3)
|
|
1.67.1
patch
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.67.1
patch
Dependencies (3)
|
|
1.67.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.67.0
minor
Dependencies (3)
|
|
1.66.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.66.0
minor
Dependencies (3)
|
|
1.65.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.65.0
minor
Dependencies (3)
|
|
1.64.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.64.0
minor
Dependencies (3)
|
|
1.63.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.63.0
minor
Dependencies (3)
|
|
1.62.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.62.0
minor
Dependencies (3)
|
|
1.61.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.61.0
minor
Dependencies (3)
|
|
1.60.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.60.0
minor
Dependencies (3)
|
|
1.59.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.59.0
minor
Dependencies (3)
|
|
1.58.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.58.0
minor
Dependencies (3)
|
|
1.57.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.57.0
minor
Dependencies (3)
|
|
1.56.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.56.0
minor
Dependencies (3)
|
|
1.55.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.55.0
minor
Dependencies (3)
|
|
1.54.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.54.0
minor
Dependencies (3)
|
|
1.53.1
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.53.1
minor
Dependencies (3)
|
|
1.52.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.52.0
minor
Dependencies (4)
|
|
1.51.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.51.0
minor
Dependencies (4)
|
|
1.50.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.50.0
minor
Dependencies (4)
|
|
1.49.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.49.0
minor
Dependencies (4)
|
|
1.48.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.48.0
minor
Dependencies (4)
|
|
1.47.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.47.0
minor
Dependencies (4)
|
|
1.46.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.46.0
minor
Dependencies (4)
|
|
1.45.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.45.0
minor
Dependencies (4)
|
|
1.44.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.44.0
minor
Dependencies (4)
|
|
1.43.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.43.0
minor
Dependencies (4)
|
|
1.42.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.42.0
minor
Dependencies (4)
|
|
1.41.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.41.0
minor
Dependencies (4)
|
|
1.40.1
patch
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.40.1
patch
Dependencies (4)
|
|
1.40.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.40.0
minor
Dependencies (4)
|
|
1.39.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.39.0
minor
Dependencies (4)
|
|
1.38.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.38.0
minor
Dependencies (4)
|
|
1.37.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.37.0
minor
Dependencies (4)
|
|
1.36.1
patch
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.36.1
patch
Dependencies (4)
|
|
1.36.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.36.0
minor
Dependencies (4)
|
|
1.35.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.35.0
minor
Dependencies (4)
|
|
1.34.0
minor
1 CVE
CVE-2026-25592
GHSA-2ww3-72rp-wpp4
PYSEC-2026-531
Feb 06, 2026
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK
9.9
/ 10
Critical
Network
Low
Low
None
Changed
High
High
High
ImpactWhat kind of vulnerability is it? Who is impacted?
An Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the PatchesHas the problem been patched? What versions should users upgrade to? The problem has been fixed in Microsoft.SemanticKernel.Plugins.Core version 1.71.0. Users should upgrade to version 1.71.0 or higher. WorkaroundsIs there a way for users to fix or remediate the vulnerability without upgrading?
Users can create a Function Invocation Filter which checks the arguments being passed to any calls to ReferencesAre there any links users can visit to find out more? Affected versions
0.12.207.1-preview
0.13.277.1-preview
0.13.442.1-preview
0.14.547.1-preview
0.15.230531.5-preview
0.15.230609.2-preview
0.15.231219.1-preview
0.16.230615.1-preview
0.17.230626.1-preview
1.0.0-beta1
1.0.0-beta2
1.0.0-beta3
+ 101 more Show less
1.0.0-beta4
1.0.0-beta5
1.0.0-beta6
1.0.0-beta7
1.0.0-beta8
1.0.0-rc1
1.0.0-rc2
1.0.0-rc3
1.0.0-rc4
1.0.1
1.1.0
1.10.0
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.15.1
1.16.0
1.16.1
1.16.2
1.17.0
1.17.1
1.17.2
1.18.0-rc
1.18.1-rc
1.18.2
1.19.0
1.2.0
1.20.0
1.21.0
1.21.1
1.22.0
1.23.0
1.24.0
1.24.1
1.25.0
1.26.0
1.27.0
1.28.0
1.29.0
1.3.0
1.3.1
1.30.0
1.31.0
1.32.0
1.33.0
1.34.0
1.35.0
1.36.0
1.36.1
1.37.0
1.38.0
1.39.0
1.4.0
1.40.0
1.40.1
1.41.0
1.42.0
1.43.0
1.44.0
1.45.0
1.46.0
1.47.0
1.48.0
1.49.0
1.5.0
1.50.0
1.51.0
1.52.0
1.52.1
1.53.0
1.53.1
1.54.0
1.55.0
1.56.0
1.57.0
1.58.0
1.59.0
1.6.0
1.6.1
1.6.2
1.6.3
1.60.0
1.61.0
1.62.0
1.63.0
1.64.0
1.65.0
1.66.0
1.67.0
1.67.1
1.68.0
1.69.0
1.7.0
1.7.1
1.70.0
1.8.0
1.9.0
Fixed in
1.71.0
References
Updated Jun 29, 2026 · Source: OSV.dev |
1.34.0
minor
Dependencies (4)
|