Back to vendor advisories
Microsoft Security Response CenterCVE-2026-69435

Azure SRE Agent Elevation of Privilege Vulnerability

CriticalVendor CVSS 9.6 / 10 1 CVE Published Oct 8, 2026 at 7:00 AM UTC

Summary

Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.

Products covered

  • Azure SRE Agent

Remediation

Separate remediation guidance was not included in the collected bulletin.

CVEs in this advisory 1

Updates

  1. Published by Microsoft Security Response Center

    The publication date reported by the vendor.

  2. Added to SecurityAlert

    We collected the advisory from the official source.