CVE-2026-33823: Microsoft Team Events Portal Information Disclosure Vulnerability
Published May 7, 2026
·Updated
Improper authorization in Microsoft Teams allows an authorized attacker to disclose information over a network.
Other sources
Microsoft Team Events Portal Information Disclosure Vulnerability
— Microsoft
Affected Software
3 affected components
Microsoft Teams
Microsoft Team Events Portal
Microsoft Teams
Event History
May 7, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·08:58 PM
Data Sourced
via MITRE·08:58 PM
DescriptionSeverity
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-33823?
CVE-2026-33823 is categorized as a medium severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2026-33823?
To fix CVE-2026-33823, ensure that you are running the latest version of Microsoft Teams and apply any available security updates.
3
What type of vulnerability is CVE-2026-33823?
CVE-2026-33823 is an information disclosure vulnerability caused by improper authorization in Microsoft Teams.
4
Who is affected by CVE-2026-33823?
Users of Microsoft Teams and Microsoft Team Events Portal are affected by CVE-2026-33823.
5
What are the potential impacts of CVE-2026-33823?
The potential impacts of CVE-2026-33823 include unauthorized access to sensitive information over a network.