CVE-2026-67383HighCVSS 6.5

Microsoft SQL Server Information Disclosure Vulnerability

Published
September 11, 2026
Last Modified

🔗 CVE IDs covered (1)

📋 Description

Generation of error message containing sensitive information in SQL Server allows an authorized attacker to disclose information over a network.

🎯 Affected products2

  • Microsoft SQL Server 2025 for x64-based Systems (CU8)
  • Microsoft SQL Server 2025 for x64-based Systems (GDR)

✅ Remediation

KB5122770 (Security Update) — fixed build 17.0.1135.8 KB5122769 (Security Update) — fixed build 17.0.4085.5

🔗 References (5)