CVE-2026-69805HighCVSS 7.5
.NET Elevation of Privilege Vulnerability
🔗 CVE IDs covered (1)
📋 Description
External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network.
🎯 Affected products3
- Microsoft Visual Studio 2022 version 17.14
- Microsoft Visual Studio 2026 version 18.9
- Microsoft.Diagnostics.Runtime
✅ Remediation
KBRelease Notes (Security Update) — fixed build 17.14.40 KBRelease Notes (Security Update) — fixed build 18.9.3 KBRelease Notes (Security Update) — fixed build 4.1.740301
🔗 References (6)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69805
- patchhttps://www.catalog.update.microsoft.com/Search.aspx?q=Visual Studio 2022 17.14.40
- referencehttps://learn.microsoft.com/en-us/visualstudio/releases/2022/release-notes
- patchhttps://www.catalog.update.microsoft.com/Search.aspx?q=Visual Studio 2026 18.9.3
- referencehttps://learn.microsoft.com/en-us/visualstudio/releases/2026/release-notes
- patchhttps://www.nuget.org/packages/Microsoft.Diagnostics.Runtime