cbcvebase.
CVE-2026-21527
published 2026-02-10

CVE-2026-21527: Microsoft Exchange Server Spoofing Vulnerability User interface (ui) misrepresentation of critical information in Microsoft Exchange Server allows an…

medium6.5
Microsoft Exchange Server Spoofing Vulnerability User interface (ui) misrepresentation of critical information in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.

Affected

10 ranges
VendorProductVersion rangeFixed in
github.comgotenberg_gotenberg_v70 – 7.10.2
github.comgotenberg_gotenberg_v8>= 0 < 8.29.08.29.0
microsoftmicrosoft_exchange_server_2016_cumulative_update_23>= 15.01.0.0 < 15.01.2507.06615.01.2507.066
microsoftmicrosoft_exchange_server_2019_cumulative_update_14>= 15.02.0.0 < 15.02.1544.03915.02.1544.039
microsoftmicrosoft_exchange_server_2019_cumulative_update_15>= 15.02.0.0 < 15.02.1748.04315.02.1748.043
microsoftmicrosoft_exchange_server_subscription_edition_rtm>= 15.02.0.0 < 15.02.2562.03715.02.2562.037
msrcmicrosoft_exchange_server_2016_cumulative_update_23
msrcmicrosoft_exchange_server_2019_cumulative_update_14
msrcmicrosoft_exchange_server_2019_cumulative_update_15
msrcmicrosoft_exchange_server_subscription_edition_rtm

CVSS provenance

cvelistv56.5MEDIUM
ghsa8.2HIGH