Security
Loading…

CVE-2026-69356

CRITICALCVSS 9.3
Description

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.

Timeline
Published:September 8th, 2026 6:18 PM
Last modified:September 8th, 2026 7:22 PM
CVSS Scoring

CVSS v3: 9.3 (CRITICAL)

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N

Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

Source: NIST NVD · Data may lag official sources by up to one minute