Microsoft Exchange Server Spoofing Vulnerability
⏰ Remediate by May 29, 2026 · passed 26d ago
Spoofing · Critical · CVSS 8.1 · Exploited in the wild. Affects: Exchange Server.
Dated obligations across Microsoft 365: CISA KEV remediation dates, retirements / removals, and API deprecations — soonest first. Informational roadmap availability targets are excluded. Subscribe via the iCal feed below.
See also: 📅 Add to calendar (iCal) · Exploited CVEs · Retirements
⏰ Remediate by May 29, 2026 · passed 26d ago
Spoofing · Critical · CVSS 8.1 · Exploited in the wild. Affects: Exchange Server.
⏰ Remediate by Jun 3, 2026 · passed 21d ago
Denial of Service · Low · CVSS 4 · Exploited in the wild. Affects: Microsoft Defender Antimalware Platform.
⏰ Act before August CY2026 · ~1 mo away
We are providing a new configuration experience in Teams Admin Center where tenant admins can enable and customize an explicit consent message before joining any meeting hosted in their organization.
⏰ Act before August CY2026 · ~1 mo away
What’s new Teams now supports audio and video offloading for Town hall attendees in VDI environments that are using the new optimization. Media streams are offloaded directly to the user’s local device, improving performance and delivering a high definition viewing experience while reducing virtual desktop resource usage. Who it applies to • Windows endpoints only using the new VDI optimization • Supported VDI platforms: o Azure Virtual Desktop and Windows 365 o Citrix o Omnissa o Amazon WorkSpaces What stays the same All attendee interactivity features remain supported, including captions, DVR, reactions, streaming chat, and Q&A. Additional details First party and third party eCDNs are supported. When enabled, the attendee’s endpoint establishes a direct peer to peer connection using the local device network, avoiding virtual desktop double hop traffic. Action required No action is required if the new optimization for Microsoft Teams is already enabled.