High severity7.8NVD Advisory· Published Sep 8, 2026
CVE-2026-69821
CVE-2026-69821
Description
Improper encoding or escaping of output in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
1- Massive Microsoft Patch Tuesday September 2026 – 973 Vulnerabilities Fixed, Including 2 Zero-DaysCyber Security News · Sep 8, 2026