← Terug naar overzicht

CVE-2026-69502 describes a Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure SQL Database. The flaw allows an unauthorized attacker to elevate privileges over a network without requiring prior authentication. SSRF vulnerabilities of this type can be exploited to pivot within cloud infrastructure, access internal services, or escalate access rights. The vulnerability is hosted in Microsoft's cloud database offering, making it potentially impactful for enterprise customers relying on Azure SQL. Microsoft has published an advisory through the Microsoft Security Response Center (MSRC). The vulnerability has been assigned a High criticality rating. No additional technical details or proof-of-concept exploits are referenced in the current disclosure. Affected organizations should monitor Microsoft's update guide for patches and mitigations.

Affected products

  • Microsoft Azure SQL Database

Related CVE's

  • CVE-2026-69502

Categories

  • Cloud & Virtualization
  • Database & Storage
  • Identity & Access