CVE-2026-69806HighCVSS 7.0

.NET Elevation of Privilege Vulnerability

Published
September 11, 2026
Last Modified

🔗 CVE IDs covered (1)

📋 Description

Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.

🎯 Affected products5

  • .NET 10.0 installed on Linux
  • .NET 11.0 installed on Linux
  • .NET 9.0 installed on Linux
  • Microsoft Visual Studio 2022 version 17.14
  • Microsoft Visual Studio 2026 version 18.9

✅ Remediation

KBRelease Notes (Security Update) — fixed build 18.9.3 KBRelease Notes (Security Update) — fixed build 17.14.40 KB5126105 (Security Update) — fixed build 9.0.317 KB5126106 (Security Update) — fixed build 10.0.111, 10.0.400 Security Update — fixed build 11.0 RC1

🔗 References (10)