Patch tracker / Products / Microsoft SQL Server 2025 (CU2)

Microsoft SQL Server 2025 (CU2): vulnerabilities and security updates

Every CVE affecting Microsoft SQL Server 2025 (CU2) and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.

CVEs
3
Updates (KBs)
1
Actively exploited (KEV)
0
Critical Severity
0

CVEs affecting Microsoft SQL Server 2025 (CU2)

CVESeverityCVSSEPSSStatus
CVE-2026-21262High8.82.0%-
CVE-2026-26115High8.82.0%-
CVE-2026-26116High8.82.0%-

Updates (KBs) for Microsoft SQL Server 2025 (CU2)

UpdateReleasedSeverityCVSSEPSSCVEsStatus
KB50774662026-03-10High8.82.0%3-

Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.

Most searched on Senserva right now

New to a term on this page? CVE, KB, KEV, CVSS, and EPSS are each explained once, on the Senserva security lexicon. Reference: Microsoft CVE and vulnerability management and the Microsoft patching guide.
All information provided as is, without warranty; verify against the vendor advisory before acting. All information and usage is subject to the Senserva EULA. Data notice and terms.