CVE-2026-41104
Microsoft · Published May 21, 2026
10.0
CVSS v3.1
CRITICALPatch availableGet patch
Description
Microsoft Planetary Computer Pro Information Disclosure Vulnerability. Deserialization of untrusted data in Microsoft Planetary Computer Pro allows an unauthorized attacker to disclose information over a network.
Affected Products
- Microsoft Planetary Computer Pro (GeoCatalog)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C