Established 2026Monday, 20 July 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageVulnerabilities Desk
Vulnerabilities

Microsoft Exchange Zero-Day Under Attack, No Patch Available

Active exploitation window opens for European enterprises using Exchange OWA while Microsoft develops emergency patch response.

Summary written by editorial AI · Source link below

Filed by Dark Reading1 min readCVE-2026-42897Read at source ↗
CVSS8.1highCVE-2026-42897

CVE-2026-42897 stems from a cross-site scripting (XSS) vulnerability and can allow an attacker to compromise Outlook Web Access (OWA) mailboxes.

Continue at the source
Read the full report at Dark Reading

External link — opens at Dark Reading in a new tab.

§
Continue with

More from the Vulnerabilities Desk