HIGHVulnerability
Verified
Global
CISA KEV: Microsoft Entra ID — Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Microsoft Entra ID formerly known as Azure Active Directory contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.
Analysis
Microsoft Entra ID formerly known as Azure Active Directory contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network. Added to CISA Known Exploited Vulnerabilities catalog on 2026-08-21. Remediation due: 2026-08-24.