Sep 2026: .NET Elevation of Privilege Vulnerability
CVE-2026-69805 Published on September 8, 2026

.NET Elevation of Privilege Vulnerability
External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Types

External Control of File Name or Path

The software allows user input to control or influence paths or file names that are used in filesystem operations.

Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

What is an Information Disclosure Vulnerability?

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

CVE-2026-69805 has been classified to as an Information Disclosure vulnerability or weakness.


Products Associated with CVE-2026-69805

Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.

 
 
 

Affected Versions

Microsoft Visual Studio 2022 version 17.14: Microsoft Visual Studio 2026 version 18.9: Microsoft.Diagnostics.Runtime: