Frequency
3
occurrences
First Seen
June 17, 2026
Last Seen
June 17, 2026
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—
Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Microsoft has patched a high-severity zero-day vulnerability in Exchange Server, tracked as CVE-2026-42897, which allows attackers to execute arbitrary JavaScript via crafted emails in Outlook Web Access. The flaw affects Exchange Server 2016, 2019, and Subscription Edition, enabling remote exploita...
A series of remote code execution (RCE) vulnerabilities have been identified in various systems, notably Microsoft Exchange and Fortra's GoAnywhere MFT. CVE-2020-16875 and CVE-2020-17132 affect Microsoft Exchange, allowing attackers to execute arbitrary code with authenticated user access. CVE-2020-...
Public Exploits
Checking GitHub for proof-of-concept code…