CVE-2026-69836
Microsoft Entra ID Remote Code Execution Vulnerability
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.
Coverage 1 source
-
2026-08-21
Help Net Security
critical
Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)
Microsoft patched a critical RCE vulnerability (CVE-2026-69836) in Entra ID that was exploited in the wild.
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-6548 Cloud Software Group NetScaler ADC
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands