CyberICT

CVE-2026-41104

Microsoft · Published May 21, 2026

CVSS v3.1

CRITICAL
Patch availableGet patch

Description

Microsoft Planetary Computer Pro Information Disclosure Vulnerability. Deserialization of untrusted data in Microsoft Planetary Computer Pro allows an unauthorized attacker to disclose information over a network.

Affected Products

  • Microsoft Planetary Computer Pro (GeoCatalog)

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C