high Known exploited

CVE-2026-69836

Microsoft Entra ID Deserialization of Untrusted Data Vulnerability

Microsoft Entra ID formerly known as Azure Active Directory contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.

Published
Aug 20, 2026
CVSS
10.0
Vendor
Microsoft
Product
Entra ID
CISA due date
2026-08-24
Source
merged

References

Check your website: Korisec scans for exposed services, weak TLS, missing headers, and WordPress plugin risks. Run a free scan or start a trial.

← Back to CVE Tracker · Official record: cve.org