CVE-2026-65669CriticalCVSS 9.6
Microsoft SQL Server Elevation of Privilege Vulnerability
🔗 CVE IDs covered (1)
📋 Description
Improper neutralization of special elements in output used by a downstream component ('injection') in SQL Server allows an unauthorized attacker to elevate privileges over a network.
🎯 Affected products1
- SQL Server Management Studio 22
✅ Remediation
KBRelease Notes (Security Update) — fixed build 22.8.2