// Microsoft 365CRITICAL
Microsoft disclosed CVE-2026-69836, a critical remote code execution vulnerability in Entra ID (Microsoft's cloud-based identity platform), on August 20, 2026. The flaw stems from unsafe deserialization of untrusted data and requires no authentication, enabling unauthenticated attackers to execute arbitrary code. Microsoft confirmed active exploitation in the wild. Since Entra ID is a managed cloud service, Microsoft deployed the fix server-side automatically; no customer patching is required, but security teams should review sign-in logs and access policies for anomalous activity.
- Microsoft Entra ID Remote Code Execution Vulnerability Exploited(opens in a new tab)
- Microsoft warns of max severity Entra ID flaw exploited in attac(opens in a new tab)
- Microsoft Rolls Out 22 Fresh Security Patches - SecurityWeek(opens in a new tab)
- Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Re(opens in a new tab)
- Microsoft Patches Entra ID RCE Vulnerability Exploited in Attack(opens in a new tab)
- Microsoft Says Latest Entra ID Flaw CVE-2026-69836 Exploited(opens in a new tab)
// Get alerts for Microsoft 365