Patch tracker / Products / Microsoft SQL Server 2025 (CU6)

Microsoft SQL Server 2025 (CU6): vulnerabilities and security updates

Every CVE affecting Microsoft SQL Server 2025 (CU6) and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.

CVEs
7
Updates (KBs)
10
Actively exploited (KEV)
0
Critical Severity
0

CVEs affecting Microsoft SQL Server 2025 (CU6)

CVESeverityCVSSEPSSStatus
CVE-2026-54117High8.81.3%-
CVE-2026-54118High8.81.3%-
CVE-2026-55002High8.81.3%-
CVE-2026-47295High8.81.3%-
CVE-2026-47296High7.51.3%-
CVE-2026-50468Medium6.51.3%-
CVE-2026-54116Medium6.51.3%-

Updates (KBs) for Microsoft SQL Server 2025 (CU6)

UpdateReleasedSeverityCVSSEPSSCVEsStatus
KB51013462026-07-14High8.81.3%7-
KB51013472026-07-14High8.81.3%4-
KB51023332026-07-14High8.81.3%7-
KB51023342026-07-14High8.81.3%4-
KB51023352026-07-14High8.81.3%4-
KB51023362026-07-14High8.81.3%4-
KB51023372026-07-14High8.81.3%4-
KB51023382026-07-14High8.81.3%4-
KB51023392026-07-14High8.81.3%4-
KB51023402026-07-14High8.81.3%4-

Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.

Most searched on Senserva right now

New to a term on this page? CVE, KB, KEV, CVSS, and EPSS are each explained once, on the Senserva security lexicon. Reference: Microsoft CVE and vulnerability management and the Microsoft patching guide.
Provided as is, without warranty; verify against the vendor advisory before acting. Data notice and terms.