Authorization Bypass in Microsoft Azure Active Directory B2C
CVE-2026-83711
10CRITICAL
What is CVE-2026-83711?
An authorization bypass vulnerability exists in Microsoft Azure Active Directory B2C, where an attacker can manipulate user-controlled keys to gain elevated privileges. This vulnerability allows unauthorized users to perform actions that should only be permitted to authorized users, potentially compromising sensitive data and security within the network. Prompt patching is required to mitigate the risk associated with this vulnerability.
Affected Version(s)
Entra -