Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-9mr8-pwpw-3j2w | Microsoft Security Advisory CVE-2026-62909 – .NET Elevation of Privilege Vulnerability |
Wed, 12 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 11 Aug 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-248 |
Tue, 11 Aug 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-252 |
Tue, 11 Aug 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Uncaught exception in .NET allows an authorized attacker to elevate privileges locally. | |
| Title | .NET Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft .net Microsoft visual Studio 2022 Microsoft visual Studio 2026 |
|
| Weaknesses | CWE-248 | |
| CPEs | cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:visual_studio_2026:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft .net Microsoft visual Studio 2022 Microsoft visual Studio 2026 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-08-12T17:55:09.879Z
Reserved: 2026-07-14T21:25:21.036Z
Link: CVE-2026-62909
Updated: 2026-08-12T13:46:12.479Z
Status : Undergoing Analysis
Published: 2026-08-11T17:18:44.817
Modified: 2026-08-12T14:18:25.547
Link: CVE-2026-62909
OpenCVE Enrichment
Updated: 2026-08-12T14:30:03Z
-
CWE-252
Unchecked Return Value
Github GHSA