Sep 2026: .NET Elevation of Privilege Vulnerability
CVE-2026-69805 Published on September 8, 2026
.NET Elevation of Privilege Vulnerability
External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network.
Weakness Types
External Control of File Name or Path
The software allows user input to control or influence paths or file names that are used in filesystem operations.
Insufficiently Protected Credentials
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
What is an Information Disclosure Vulnerability?
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
CVE-2026-69805 has been classified to as an Information Disclosure vulnerability or weakness.
Products Associated with CVE-2026-69805
Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.
Affected Versions
Microsoft Visual Studio 2022 version 17.14:- Version 17.14.0 and below 17.14.40 is affected.
- Version 18.9.0 and below 18.9.3 is affected.
- Version 4.1.740301 and below 4.1.740301 is affected.