Microsoft · Purview · CVE-2026-26138
**Name of the Vulnerable Software and Affected Versions**
Microsoft Purview (affected versions not specified)
**Description**
Server-side request forgery (ssrf) exists in Microsoft Purview, potentially allowing an unauthorized attacker to elevate privileges over a network. SSRF occurs when a server processes a request to retrieve a remote resource without properly validating the request, which can lead to unauthorized access to internal resources or external systems.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.