M365 Change Tracker

← All changes · security · CVE-2026-48579

CVE-2026-48579CriticalMonitor

Microsoft Exchange Online Information Disclosure Vulnerability

Severity Critical  ·  Urgency Monitor

Why it matters: Critical severity (CVSS 9.1)

Information Disclosure · Critical · CVSS 9.1. Affects: Exchange Server.

CVSS 9.1EPSS 1.0%Update published 2026-06-23Source updated 2026-06-23NVD

Affected: Exchange Server

Change history

2026-06-23 · First seen

View at Microsoft →