CVE-2026-33823
Microsoft · Published May 7, 2026
9.6
CVSS v3.1
CRITICALPatch availableGet patch
Description
Microsoft Team Events Portal Information Disclosure Vulnerability. Improper authorization in Microsoft Teams allows an authorized attacker to disclose information over a network.
Affected Products
- Microsoft Teams
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C