πŸ€– CVE-2026-69836 (CVSS 10.0): RCE in Microsoft Entra ID (ex-Azure AD), exploited in the wild. Vulnerability in the cloud identity & access management service; no customer action required. πŸ”— https://

0): RCE in Microsoft Entra ID (ex-Azure AD), exploited in the wild. Vulnerability in the cloud identity & access management service; no customer action required.

6 reportsother

Claim audit

No BS check run yet β€” press βš– to extract this story's claims and verify them against independent sources.

All coverage

πŸ€– CVE-2026-69836 (CVSS 10.0): RCE in Microsoft Entra ID (ex-Azure AD), exploited in the wild. Vulnerability in the cloud identity & access management service; no customer action required. πŸ”— https://

mastodon:infosec-exchangeother39d ago kagi β†—

πŸ€– CVE-2026-69836 (CVSS 10.0): RCE in Microsoft Entra ID (ex-Azure AD), exploited in the wild. Vulnerability in the cloud identity & access management service; no customer action required. πŸ”— https:// thehackernews.com/2026/08/micr osoft-entra-id-flaw-cvss-100.html # CVE # CyberSec # RCE

A critical deserialization vulnerability (CVE-2026-69836) has been actively exploited in Microsoft Entra ID. The flaw could allow unauthorized access to identity and access management functions across

mastodon:infosec-exchangeother39d ago kagi β†—

A critical deserialization vulnerability (CVE-2026-69836) has been actively exploited in Microsoft Entra ID. The flaw could allow unauthorized access to identity and access management functions across Azure, M365, and Dynamics CRM Online. # CriticalVulnerability # MicrosoftEntra # IdentitySecurity # Deserialization https:// cyberworldops.eu/en/cve-2026-6 9836-critical-vulnerability-exploited-in-mi

CVE-2026-69836 was added to the KEV. It was published yesterday by Microsoft: https:// msrc.microsoft.com/update-guid e/vulnerability/CVE-2026-69836 Microsoft says: Publicly disclosed: No Exploited: N

mastodon:infosec-exchangeother39d ago kagi β†—

CVE-2026-69836 was added to the KEV. It was published yesterday by Microsoft: https:// msrc.microsoft.com/update-guid e/vulnerability/CVE-2026-69836 Microsoft says: Publicly disclosed: No Exploited: No Exploitability assessment: Exploitation Less Likely and This vulnerability has already been fully mitigated by Microsoft. There is no action for users of this service to take. The purpose of this CV

🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog ( https:// secdb.nttzen.cloud/security-ad visory/detail/CISA-2026:0821 ) CISA has added 2 new vulnerabilities to its Known Ex

mastodon:infosec-exchangeother39d ago kagi β†—

🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog ( https:// secdb.nttzen.cloud/security-ad visory/detail/CISA-2026:0821 ) CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the feder

Microsoft retracted its claim that critical Entra ID flaw CVE-2026-69836 was actively exploited, despite its CVSS 10 severity. The reversal spotlights gaps in https:// deafnews.it/en/article/microso f

mastodon:infosec-exchangeother38d ago kagi β†—

Microsoft retracted its claim that critical Entra ID flaw CVE-2026-69836 was actively exploited, despite its CVSS 10 severity. The reversal spotlights gaps in https:// deafnews.it/en/article/microso ft-corrects-course-cve-2026-69836-was-cvss-10-but-not-exploited