Authentication Bypass Vulnerability in Microsoft Dataverse
CVE-2026-77903

9CRITICAL

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
17 September 2026

What is CVE-2026-77903?

The authentication bypass vulnerability in Microsoft Dataverse enables unauthorized attackers to spoof identities, allowing them to escalate privileges over a network. This vulnerability can potentially lead to unauthorized access and misuse of sensitive data if exploited. It is crucial for organizations using Microsoft Dataverse to review their security posture and apply the necessary updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Microsoft Dataverse -

References

CVSS V3.1

Score:
9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.