Microsoft

CVE-2026-53689

Microsoft Security Center Center News - Fri, 06/19/2026 - 08:01
Information published.
Categories: Microsoft

CVE-2026-47633 Microsoft Cost Management Information Disclosure Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Cost Management Interactive Experiences allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-32208 Microsoft Edge (Chromium-based) Spoofing Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-32174 Azure Bot Service Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-45480 Azure Active Directory Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-42895 Microsoft Copilot Tampering Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.
Categories: Microsoft

CVE-2026-54130 M365 Copilot Information Disclosure Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-47647 Dynamics 365 Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-48584 Microsoft Azure Synapse Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-48582 Microsoft Exchange Online Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-47645 Microsoft 365 Copilot's Business Chat Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-47646 Dynamics 365 Customer Voice Spoofing Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Customer Voice allows an unauthorized attacker to perform spoofing over a network.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator - Microsoft