Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 19 Mar 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Microsoft Purview Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft office Purview |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:office_purview:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft office Purview |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-03-19T21:21:07.936Z
Reserved: 2026-02-11T16:24:51.134Z
Link: CVE-2026-26138
No data.
Status : Received
Published: 2026-03-19T21:17:08.217
Modified: 2026-03-19T21:17:08.217
Link: CVE-2026-26138
No data.
OpenCVE Enrichment
No data.
Weaknesses