PT-2026-30207 · Microsoft · Bing

Sriharsha Pallekonda

·

Published

2026-04-03

·

Updated

2026-04-03

·

CVE-2026-32186

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Bing (affected versions not specified)
Description A Server-Side Request Forgery (SSRF) issue exists within Bing's search infrastructure. This could allow attackers to pivot into Microsoft's internal networks. The vulnerability involves crafting specific requests to exploit the SSRF condition.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-32186

Affected Products

Bing