Server-Side Request Forgery Vulnerability in Data Quality by Microsoft
CVE-2026-57106

10CRITICAL

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
24 July 2026

What is CVE-2026-57106?

A server-side request forgery (SSRF) vulnerability in Data Quality allows an unauthorized attacker to manipulate network requests, potentially elevating their privileges and gaining unauthorized access to sensitive systems. It is essential to apply the latest patches and security updates to safeguard against potential exploitation. For further details, refer to the vendor advisory.

Affected Version(s)

Microsoft Purview Data Governance -

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.