PT-2026-87732 · Microsoft+1 · .Net 10.0+8

CVE-2026-69806

·

Published

2026-09-08

·

Updated

2026-09-10

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.

Fix

Information Disclosure

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-69806
USN-8740-1

Affected Products

.Net 10.0
.Net 11.0
.Net 9.0
Visual Studio 2022 Version 17.14
Visual Studio 2026 Version 18.9
Dotnet10
Dotnet6
Dotnet7
Dotnet8