Share via

Defender for cloud inventory health is reporting vulnerability findings that according to update history on the VM's have been installed.

jbutler 0 Reputation points
2025-05-05T10:28:58.7433333+00:00

All the vulnerability findings are related to .net or .net core. Some going back to 2023. Are these false positives? Highs and Meds so really want to make this go away. All windows updates have been installed and show in windows update history. Any directions would be appreciated.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

1 answer

Sort by: Most helpful
  1. Andrew Blumhardt 10,071 Reputation points Microsoft Employee
    2025-05-14T21:39:34.8366667+00:00

    Maybe I can share a screenshot instead. Are you talking about " Machines should have vulnerability findings resolved" finding "Update Microsoft .net Framework"?

    This recommendation can be somewhat transient since it is largely driven by missing software updates with new updates being available on a regular basis. Defender for Servers includes a Defender for Endpoint license. You will see similar recommendations for MDE in the Defender for XDR portal and may also have patch tracking from Intune.

    When you drill into the recommendation it shows every CVE associated with the outdated software. Many of these CVEs date back years, though your only point if interest is that there is a missing .net patch. You might even consider a targeted exemption for .net if you are unable to resolve.

    I think you are overly focused on the CVE list here, just know that this simply states there is a new version available.
    User's image

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.