PatchSiren

LuckyPennySoftware CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH LuckyPennySoftware CVE published 2026-03-13

CVE-2026-32933

CVE-2026-32933 is a denial-of-service vulnerability in AutoMapper’s core mapping engine. When the library processes deeply nested or self-referential object graphs, it can recurse without a default maximum depth limit, eventually exhausting stack memory and terminating the process with a StackOverflowException. The issue is rated High (CVSS 7.5) because it is network-reachable, requires no privileges or u [truncated]