CVE-2026-69730

CRITICAL

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVSS v3.1 Score

9.8
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Complexity
LOW
Privileges
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH
Published: 9/8/2026Modified: 9/10/2026

Related Intelligence (4)

CRITICALZero Day

September 2026 Patch Tuesday roundup: Plugs for two zero day holes among almost 1,000 fixes in Windows

Possibly wormable bugs and two zero-day holes highlight the almost 1,000 fixes issued today by Microsoft in its September Patch Tuesday release . The 964 vulnerabilities, another record since Microsoft began using AI in the middle of the year to find holes, require customer action. Excluded are 174 third-party/open-source CVEs and 23 Chromium/Edge CVEs, as well as nine Microsoft mitigated vulnerab

CVE-2026-85880CVE-2026-81963
CSO Online
MEDIUMVulnerability

Microsoft Plugs Nearly 1,000 Security Holes

Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping to speed the discovery of vulnerabilities, but security experts warn that many organizations already are struggling to prioritize the more human-intensive endeavor of testing and d

CVE-2026-69730CVE-2026-69829
Krebs on Security
CRITICALRansomware

Patch Tuesday - September 2026

Microsoft is publishing 974 own-product vulnerabilities on September 2026 Patch Tuesday , including 723 vulnerabilities in Windows. Along with Microsoft fixes for 25 non-Microsoft CVEs, that brings the total number of vulnerabilities on the table today to 999. Whether this is the biggest Patch Tuesday ever depends on how we count, but this is by far the most CVEs that Microsoft has ever published

CVE-2026-85880CVE-2026-81963
Rapid7
CRITICALVulnerability

NVD CRITICAL: CVE-2026-69730 — Use after free in Windows DNS allows an unauthorized attacker to execute code ov...

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-69730
NIST NVD

References (1)