M365 Change Tracker

← All changes · security · CVE-2026-42901

CVE-2026-42901CriticalMonitor

Microsoft Entra ID Elevation of Privilege Vulnerability

Severity Critical  ·  Urgency Monitor

Why it matters: Critical severity (CVSS 10)

Elevation of Privilege · Critical · CVSS 10. Affects: Microsoft Entra ID.

CVSS 10EPSS 0.3%Update published 2026-06-23Source updated 2026-06-23NVD

Affected: Microsoft Entra ID

Change history

2026-06-23 · First seen

View at Microsoft →