CVE-2026-69836
Entra Id90/100
exploitation likelihood
CVSS10
EPSS1.6%
VulnCheck KEVEXPLOITED
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.
Listed in VulnCheck KEV (confirmed exploited in the wild) · CVSS base 10.0
Public PoC / Exploit2
Defensive review only — these references demonstrate exploitability.
References1