CVE-2026-68782 — Improper neutralization of special elements used in an sql command ('sql injection') in Azure
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network. CVSSv3.1 9.9 (CRITICAL)