Marten
NuGet2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Martenpage 1 of 1
- CVE-2026-45288CRITICALCVSS 9.8EG 9.8fixed in 8.37.02026-05-28
vulnerable: 0.5.0.8 ... 8.9.0-channels-alpha-2 (341 versions)
Marten is a .NET Transactional Document DB and Event Store on PostgreSQL. Prior to 8.36.1, Marten's full-text search APIs interpolated the user-supplied regConfig parameter directly into the generated SQL without parameterization or valida…
- CVE-2026-75513CRITICALCVSS 9.1EG 9.1fixed in 9.13.02026-09-16
vulnerable: 7.0.0 ... 9.9.1 (207 versions)
Marten is a .NET Transactional Document DB and Event Store on PostgreSQL. From version 7.0.0 until 9.13.0, several Marten LINQ and tenant-management paths interpolate runtime, potentially attacker-controlled strings into single-quoted SQL …
Check whether Marten is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Marten CVEs against the assets you own.
Book a Demo →