Critical severity9.3NVD Advisory· Published Jul 9, 2026· Updated Jul 9, 2026
CVE-2026-47646
CVE-2026-47646
Description
Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Customer Voice allows an unauthorized attacker to perform spoofing over a network.
Affected products
2(expand)+ 1 more
- (no CPE)
- cpe:2.3:a:microsoft:dynamics_365_customer_voice:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47646nvdVendor Advisory
News mentions
0No linked articles in our index yet.