CVE-2026-57106: Data Quality Elevation of Privilege Vulnerability
Published Jul 23, 2026
·Updated
Data Quality Elevation of Privilege Vulnerability
Other sources
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
— Microsoft
Affected Software
2 affected components
Microsoft Purview Data Governance
Microsoft Purview Data Governance
Event History
Jul 23, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
Jul 24, 2026
CVE Published
via MITRE·02:36 PM
Data Sourced
via MITRE·02:36 PM
DescriptionSeverity
Data Sourced
via NVD·03:18 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-57106?
CVE-2026-57106 has a critical severity rating of 10.
2
What is CVE-2026-57106 about?
CVE-2026-57106 describes a server-side request forgery vulnerability that allows unauthorized privilege elevation in Microsoft Purview Data Governance.
3
How do I fix CVE-2026-57106?
To fix CVE-2026-57106, you should apply the latest security updates and patches provided by Microsoft for Microsoft Purview Data Governance.
4
Who is affected by CVE-2026-57106?
CVE-2026-57106 affects users and organizations utilizing Microsoft Purview Data Governance.
5
What can an attacker do with CVE-2026-57106?
An attacker exploiting CVE-2026-57106 can elevate privileges and potentially access sensitive data on the network.