Blog: Jeremy Warner
Jeremy Warner's Blog
Posts
Categories
Tags
Jeremy Warner's Blog
Posts
Categories
Tags
Generative Art 2Art 2Links 2WebDev 4Vue Ecosystem 3Dotnet 2Development 2Visual Studio 1Nuget 1
Identifying Vulnerable Nuget Packages - A Mystery (Solved)

Posted: 4/29/2025
Category:
Blog
Tags:
Dotnet
Nuget
Development

I'm working on updating packages on multiple projects to eliminate vulnerable nuget packages. We have been doing this on a recurring basis for some time, but I recently got a script built to do better searches across transitive dependencies in all projects under a given path. And... it's exposed quite a few more packages that need to be updated. The basic command I'm using to identify vulnerable packages is dotnet list package --vulnerable --include-transitive.

Continue Reading >>