← Back

CVE-2026-21260

nvd nist
Published: Feb 10, 2026Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: secure@microsoft.com (Secondary)

Description

Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.

Affected (13)

5 products
365 Apps
Office
Outlook
Sharepoint Server
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Microsoft
Version 2019
Version 2019
Microsoft
Version 2021
Version 2021
Version 2024
Version 2024
Microsoft
Version 2016
Version 2016
Microsoft
Before 16.0.19127.20518
Version 2016
Version 2019

References (1)

Timeline

No history available yet.