PT-2026-87732 · Microsoft+1 · .Net 10.0+8
CVE-2026-69806
·
Published
2026-09-08
·
Updated
2026-09-10
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.
Fix
Information Disclosure
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
.Net 10.0
.Net 11.0
.Net 9.0
Visual Studio 2022 Version 17.14
Visual Studio 2026 Version 18.9
Dotnet10
Dotnet6
Dotnet7
Dotnet8