CVE-2026-69559: Microsoft Teams for Android Information Disclosure Vulnerability
Microsoft Teams for Android Information Disclosure Vulnerability
Other sources
Origin validation error in Microsoft Teams for Android allows an authorized attacker to disclose information over a network.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1416/1.0.0.2026142702
Event History
Frequently Asked Questions
What level of access and interaction are required to exploit this issue?
An attacker must be authorized and have low privileges. Exploitation also requires user interaction and has high attack complexity, despite being reachable over a network.
What is the likely security impact if exploitation succeeds?
The reported impact is information disclosure with high confidentiality impact. No integrity or availability impact is indicated.
Is there evidence that this vulnerability is being exploited in the wild?
The provided exploit maturity rating is E:U, which indicates no known exploitation status is reported in the supplied data.