Aug 2026: Azure Entra ID Spoofing Vulnerability
CVE-2026-62869 Published on August 11, 2026

Azure Entra ID Spoofing Vulnerability
Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.

Vendor Advisory NVD

Weakness Type

Insufficient Verification of Data Authenticity

The software does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.


Products Associated with CVE-2026-62869

Want to know whenever a new CVE is published for Microsoft Entra Id? stack.watch will email you.

 

Affected Versions

Microsoft Entra Version - is affected by CVE-2026-62869