Sql Server Management Studio Microsoft Sql Server Management Studio

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Microsoft Sql Server Management Studio.

Recent Microsoft Sql Server Management Studio Security Advisories

Advisory Title Published
CVE-2025-29803 CVE-2025-29803 Visual Studio Tools for Applications and SQL Server Management Studio Elevation of Privilege Vulnerability April 8, 2025

By the Year

In 2026 there have been 0 vulnerabilities in Microsoft Sql Server Management Studio. Last year, in 2025 Sql Server Management Studio had 1 security vulnerability published. Right now, Sql Server Management Studio is on track to have less security vulnerabilities in 2026 than it did last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 1 7.30
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 0 0.00
2020 1 5.30
2019 2 0.00
2018 3 0.00

It may take a day or so for new Sql Server Management Studio vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Microsoft Sql Server Management Studio Security Vulnerabilities

Apr 2025: Visual Studio Tools for Applications and SQL Server Management Studio Elevation of Privile
CVE-2025-29803 7.3 - High - April 12, 2025

Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.

DLL preloading

A denial of service vulnerability exists when Microsoft SQL Server Management Studio (SSMS) improperly handles files
CVE-2020-1455 5.3 - Medium - August 17, 2020

A denial of service vulnerability exists when Microsoft SQL Server Management Studio (SSMS) improperly handles files. An attacker could exploit the vulnerability to trigger a denial of service. To exploit the vulnerability, an attacker would first require execution on the victim system. The security update addresses the vulnerability by ensuring Microsoft SQL Server Management Studio properly handles files.

Oct 2019:
CVE-2019-1313 - October 10, 2019

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1376.

Oct 2019:
CVE-2019-1376 - October 10, 2019

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1313.

Oct 2018:
CVE-2018-8527 - October 10, 2018

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing a malicious XEL file containing a reference to an external entity, aka "SQL Server Management Studio Information Disclosure Vulnerability." This affects SQL Server Management Studio 17.9, SQL Server Management Studio 18.0. This CVE ID is unique from CVE-2018-8532, CVE-2018-8533.

Oct 2018:
CVE-2018-8532 - October 10, 2018

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing a malicious XMLA file containing a reference to an external entity, aka "SQL Server Management Studio Information Disclosure Vulnerability." This affects SQL Server Management Studio 17.9, SQL Server Management Studio 18.0. This CVE ID is unique from CVE-2018-8527, CVE-2018-8533.

Oct 2018:
CVE-2018-8533 - October 10, 2018

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing malicious XML content containing a reference to an external entity, aka "SQL Server Management Studio Information Disclosure Vulnerability." This affects SQL Server Management Studio 17.9, SQL Server Management Studio 18.0. This CVE ID is unique from CVE-2018-8527, CVE-2018-8532.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Microsoft Sql Server Management Studio or by Microsoft? Click the Watch button to subscribe.

Microsoft
Vendor

subscribe