Use of uninitialized resource in Microsoft SQL Server - CVE-2026-68776
Published: September 9, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to use of an uninitialized resource in SQL Server when processing network requests. A remote user can exploit the vulnerability to disclose sensitive information.
Successful exploitation could allow reading portions of process memory.