CVE-2026-66302

CRITICAL

External control of file name or path in Skype for Business allows an unauthorized attacker to execute code over a network.