SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-65669

CRITICAL · CVSS 9.6 EPSS 0.74%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A critical vulnerability in SQL Server allows unauthorized attackers to exploit improper neutralization of special elements in output, leading to potential privilege escalation over a network. Organizations using SQL Server should prioritize remediation efforts to mitigate the risk of unauthorized access and data manipulation. Immediate action is essential to protect sensitive data and maintain system integrity.

CVE
CVE-2026-65669
Severity
CRITICAL
CVSS
9.6
EPSS
0.74%

Original NVD Description

Improper neutralization of special elements in output used by a downstream component ('injection') in SQL Server allows an unauthorized attacker to elevate privileges over a network.