Server-Side Request Forgery Vulnerability in Microsoft Purview
CVE-2026-26138
8.6HIGH
What is CVE-2026-26138?
A server-side request forgery vulnerability in Microsoft Purview can allow an attacker to manipulate server-side requests, potentially leading to unauthorized access and privilege escalation within the network. Attackers may exploit this weakness to execute commands remotely or access sensitive internal resources that should otherwise be protected.
Affected Version(s)
Microsoft Purview -