CVE-2026-48579 Microsoft Exchange Online Information Disclosure Vulnerability Improper authorization in Microsoft Exchange Online allows an unauthorized attacker to disclose information over a network. EPSS 0.01 CVE-2026-48579 Microsoft US Microsoft Security · 4. 6. 16:00