Authorization Bypass Vulnerability in Microsoft Bookings
CVE-2026-94510
9.9CRITICAL
What is CVE-2026-94510?
The vulnerability in Microsoft Bookings allows attackers to exploit a weakness in authorization processes, enabling unauthorized access and privilege escalation. By controlling specific user-provided keys, an attacker can manipulate access controls over a network, potentially compromising sensitive information and systems. It is crucial for organizations using Microsoft Bookings to apply the necessary patches to mitigate this security risk.
Affected Version(s)
Microsoft Bookings -