Server-Side Request Forgery in Microsoft Azure Active Directory
CVE-2026-69851
9.9CRITICAL
What is CVE-2026-69851?
An SSRF vulnerability exists in Microsoft Azure Active Directory, enabling an authorized attacker to manipulate requests sent from the server to internal infrastructure. This flaw can potentially lead to unauthorized privilege escalation within the network, impacting the confidentiality and integrity of data handled by the compromised service.
Affected Version(s)
Microsoft Entra -