Improper Access Control Vulnerability in Microsoft Purview eDiscovery
CVE-2026-65668
8.8HIGH
What is CVE-2026-65668?
An improper access control vulnerability in Microsoft Purview eDiscovery enables attackers, who already have valid authorization, to exploit the system for unauthorized privilege escalation over a network. This flaw can potentially allow attackers to gain access to sensitive data and perform actions beyond their intended permissions, raising serious security concerns for organizations utilizing this product.
Affected Version(s)
Microsoft Purview eDiscovery -