Microsoft Security Response Center guidance
Install KB5078943.
Vendor-listed releases
- 9.1.0044.0015
Vulnerability intelligence
CVE-2026-33103 and is rated Medium severity with a CVSS score of 5.5. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
Install KB5078943.
Improper access control in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to disclose information locally.