Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 19 Mar 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Microsoft Purview Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft office Purview |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:office_purview:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft office Purview |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-03-19T21:21:07.302Z
Reserved: 2026-02-11T16:24:51.134Z
Link: CVE-2026-26139
No data.
Status : Received
Published: 2026-03-19T21:17:08.377
Modified: 2026-03-19T21:17:08.377
Link: CVE-2026-26139
No data.
OpenCVE Enrichment
No data.
Weaknesses