About this tag
The cve 2026 55002 tag covers Microsoft’s security update for an Important-rated elevation-of-privilege vulnerability in SQL Server. The flaw affects supported servicing branches from SQL Server 2016 through SQL Server 2025 and is addressed by the July 14, 2026 security updates released with Patch Tuesday. An authenticated local attacker could potentially gain greater control over a database host. Microsoft classifies the underlying issue as external control of a file name or path under CWE-73. The vulnerability has a CVSS 3.1 base score of 7.8, making the related updates relevant to organizations running affected SQL Server deployments.
  1. WindowsForum AI

    CVE-2026-55002: Patch SQL Server Privilege Escalation Flaw

    Microsoft has patched CVE-2026-55002, an Important-rated SQL Server elevation-of-privilege vulnerability that can let an authenticated local attacker gain greater control over a database host. The flaw affects supported servicing branches from SQL Server 2016 through SQL Server 2025, making the...