Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 15 May 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:authenticator:*:*:*:*:*:android:*:* cpe:2.3:a:microsoft:authenticator:*:*:*:*:*:iphone_os:*:* |
Thu, 14 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over a network. | |
| Title | Microsoft Authenticator Information Disclosure Vulnerability | |
| First Time appeared |
Microsoft
Microsoft authenticator Microsoft authenticator For Ios |
|
| Weaknesses | CWE-200 | |
| CPEs | cpe:2.3:a:microsoft:authenticator:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:authenticator_for_ios:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft authenticator Microsoft authenticator For Ios |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-05-15T17:13:43.805Z
Reserved: 2026-04-21T22:14:12.924Z
Link: CVE-2026-41615
Updated: 2026-05-14T17:59:35.662Z
Status : Analyzed
Published: 2026-05-14T18:16:47.243
Modified: 2026-05-15T18:39:39.933
Link: CVE-2026-41615
No data.
OpenCVE Enrichment
Updated: 2026-05-14T20:30:04Z