CVE-2026-69836
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.
- Affected products
- Entra Id
- Microsoft Entra Id
- All versions
- CVSS 3.1
- 10.0 CRITICAL
- EPSS
- 1.6% (74th percentile)
- Weakness
- CWE-502
- NVD status
- Analyzed
- Published
- 2026-08-20
CVE-2026-69836 at NVD
3 known exploits for CVE-2026-69836
Proof-of-concept code and exploit modules indexed by Sploitus