OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-77903

CRITICAL · CVSS 9 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-09-17 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Microsoft Dataverse is vulnerable to an authentication bypass due to spoofing, enabling unauthorized attackers to elevate their privileges over a network. This critical vulnerability poses a significant risk to organizations using Dataverse, as it could lead to unauthorized access to sensitive data and resources. Organizations leveraging Microsoft Dataverse should prioritize immediate remediation efforts to mitigate potential exploitation.

CVE
CVE-2026-77903
Severity
CRITICAL
CVSS
9
EPSS
0.37%
Microsoft

Original NVD Description

Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)