CVE-2026-40370 | Microsoft SQL Server up to 2025 file inclusion
A vulnerability identified as critical has been detected in Microsoft SQL Server 2016/2017/2019/2022/2025. The impacted element is an unknown function. Performing a manipulation results in file inclusion.
This vulnerability was named CVE-2026-40370. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.