Sep 2026: Microsoft Teams for Android Information Disclosure Vulnerability
CVE-2026-65812 Published on September 8, 2026

Microsoft Teams for Android Information Disclosure Vulnerability
Insertion of sensitive information into sent data in Microsoft Teams for Android allows an authorized attacker to disclose information over a network.

Vendor Advisory NVD

Weakness Type

Insertion of Sensitive Information Into Sent Data

The code transmits data to another actor, but a portion of the data includes sensitive information that should not be accessible to that actor. Sensitive information could include data that is sensitive in and of itself (such as credentials or private messages), or otherwise useful in the further exploitation of the system (such as internal file system structure).


Products Associated with CVE-2026-65812

Want to know whenever a new CVE is published for Microsoft Teams? stack.watch will email you.

 

Affected Versions

Microsoft Teams for Android: