SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-66304

HIGH · CVSS 7.5 EPSS 0.71%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A server-side request forgery vulnerability in Skype for Business allows unauthorized attackers to exploit the application, potentially disclosing sensitive information over the network. Organizations using Skype for Business should prioritize addressing this vulnerability to mitigate risks of data exposure and unauthorized access. Immediate action is recommended for IT security teams to ensure the integrity of their communications infrastructure.

CVE
CVE-2026-66304
Severity
HIGH
CVSS
7.5
EPSS
0.71%

Original NVD Description

Server-side request forgery (ssrf) in Skype for Business allows an unauthorized attacker to disclose information over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)