CVE-2026-69805

Summary

External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a network.

Affected Software

VendorProductVersion RangeStatus
MicrosoftMicrosoft Visual Studio 2022 version 17.1417.14.0 < 17.14.40affected
MicrosoftMicrosoft Visual Studio 2026 version 18.918.9.0 < 18.9.3affected
MicrosoftMicrosoft.Diagnostics.Runtime4.1.740301 < 4.1.740301affected

Weaknesses

  • CWE-73: CWE-73: External Control of File Name or Path
  • CWE-522: CWE-522: Insufficiently Protected Credentials
  • CWE-200: CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

References