CVE-2026-65812: Microsoft Teams for Android Information Disclosure Vulnerability
Insertion of sensitive information into sent data in Microsoft Teams for Android allows an authorized attacker to disclose information over a network.
Other sources
Microsoft Teams for Android Information Disclosure Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1416/1.0.0.2026133602
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
An attacker must be authorized and have low-level privileges. Exploitation also requires user interaction and can be performed over a network.
What is the potential impact?
Successful exploitation may allow disclosure of sensitive information. The supplied vector indicates high confidentiality impact, with no integrity or availability impact stated.
Is the default configuration affected?
The provided information does not state whether default Microsoft Teams for Android configurations are affected.