CISA added CVE-2019-1068, a remote code execution vulnerability in Microsoft SQL Server, to its Known Exploited Vulnerabilities catalog after confirming active exploitation. The flaw allows attackers to execute code with the privileges of the SQL Server Database Engine service account. CISA mandated remediation by August 29, 2026, and flagged the issue for forensic triage. While the vulnerability dates to 2019, recent exploitation attempts demonstrate ongoing risk to SQL Server instances commonly deployed in Azure environments.
- CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux(opens in a new tab)
- CISA Warns of Microsoft SQL Server RCE Vulnerability Exploited i(opens in a new tab)
- CISA Warns of Six Exploited Flaws in Microsoft, Linux and Citrix(opens in a new tab)
- CISA Warns of Actively Exploited Microsoft SQL Server RCE Vulner(opens in a new tab)
// Get alerts for Microsoft Azure