CVE-2026-35431Disclosure(microsoft / entra_id)

LOWCVSS 10.0 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch microsoft entra_id systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Server-side request forgery (ssrf) in Microsoft Entra ID Entitlement Management allows an unauthorized attacker to perform spoofing over a network.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • entra_id

Threat summary

  • Patch or workaround signal is available
  • 14 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 5 signals
  • Technical details provided in 10 signals
  • Disclosure: 7 classified signals
  • General: 3 classified signals
  • Peaked 4d ago at 6 mentions (2026-04-24); latest day: 3
  • 14 total mentions across 5 days

Affected systems

Vendors
Products
entra_id

1 version affected across 1 product

Deep dive

Activity timeline14 mentions / 5d
02356Mentions · 2026-04-24: 6Mentions · 2026-04-25: 2Mentions · 2026-04-26: 1Mentions · 2026-04-27: 2Mentions · 2026-04-30: 3Patch / Workaround · 2026-04-24: 3Patch / Workaround · 2026-04-30: 2Technical Details · 2026-04-24: 4Technical Details · 2026-04-25: 2Technical Details · 2026-04-27: 1Technical Details · 2026-04-30: 304-2404-2504-2604-2704-30
Signal classification3 categories
Disclosure
750.0%
Patch
428.6%
General
321.4%
Referenced assets8 URLs
Classification over time
DateTotalLabels
2026-04-246
Disclosure2General1Patch3
2026-04-252
Disclosure2
2026-04-261
Disclosure1
2026-04-272
Disclosure1General1
2026-04-303
Disclosure1General1Patch1
Full discourse14 posts
  • إبراهيم بوحيمد | Ibrahim Buhaimed@buhaimedi
    Disclosure

    🚨 ثغرة خطيرة في Microsoft Entra ID. رقم الثغرة: CVE-2026-35431 | التقييم: 10/10 (Critical). الثغرة من نوع (SSRF) في (Entitlement Management). سببها ضعف التحقق من المدخلات يقدر المهاجم يرسل طلب خبيث، ويخلي سيرفرات Entra ID تنفذه بالنيابة عنه. بقية التفاصيل 🧵👇🏻 https://t.co/CIPXTGoDwW

    Post summary

    The tweet announces a critical SSRF vulnerability (CVE‑2026‑35431) in Microsoft Entra ID, detailing its nature and severity but offering no PoC, exploit, or mitigation information.

    22038326.1K
    49.3K followersView on X
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨Microsoft Entra ID Entitlement Management spoofing (CVE-2026-35431) A spoofing flaw enables SSRF-style exploitation via crafted requests, potentially impacting confidentiality, integrity, and availability. 👉 Microsoft-managed service - remediation handled by Microsoft https://t.co/8MwTeO7XOZ

    Post summary

    Microsoft has disclosed a spoofing vulnerability (CVE-2026-35431) in Entra ID Entitlement Management that allows SSRF-style attacks and has already provided remediation.

    01040187
    41 followersView on X
  • kawn@kawn2020
    Disclosure

    #securityupdate #microsoft #定例外 2026. 4.23 Microsoft Entra ID Entitlement Management Spoofing Vulnerability CVE-2026-35431 Security Vulnerability リリース日: - マイクロソフト https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-35431

    Post summary

    Microsoft announces the release of a security update for CVE-2026-35431, the Entra ID Entitlement Management Spoofing Vulnerability, and provides a link to the official Microsoft vulnerability guide.

    10100197
    85 followersView on X
  • Orizon@OrizonCyber
    Patch

    🚨 CVE-2026-35431 — CVSS 10/10 ██████████ Server-side request forgery (ssrf) in Microsoft Entra ID Entitlement Management allows an unauthorized attacker to... Severity: CRITICAL Patch now. #cybersecurity #CVE https://t.co/BLAN31U41N

    Post summary

    A critical SSRF vulnerability (CVE‑2026‑35431) in Microsoft Entra ID Entitlement Management has been disclosed; a patch is now available.

    10000109
    28 followersView on X
  • selva@SelvaKtm2
    Disclosure

    CVE-2026-35431: Critical SSRF Flaw Hits Microsoft Entra ID https://thecybrdef.com/cve-2026-35431-microsoft-entra-id-ssrf-vulnerability/ #CVE202635431 #MicrosoftEntraID #CyberSecurity

    Post summary

    CVE-2026-35431 is a newly disclosed critical SSRF flaw impacting Microsoft Entra ID; detailed technical information is provided, but no PoC, exploit, or patch is mentioned.

    0000018
    4 followersView on X
  • Aaron Schnieder@schnieds
    Patch

    Microsoft just patched CVE-2026-35431 (CVSS 10.0) — their 'Agent ID Administrator' role, built to manage AI agent identities, was exploitable for privilege escalation. The guard became the gate. Same week: SecureAuth launched the first Agent Trust Registry with trust scores for enterprise agents. Forbes: 'Identity is the backbone of scalable AI.' 88% of enterprises report agent security incidents. The centralized IAM approach to agent governance is structurally flawed. On-chain identity (ERC-8004) has no single point of failure, is portable across platforms, and earns reputation from real transactions. 129K+ agents already registered. http://agentlux.ai

    Post summary

    The post announces that Microsoft has supplied a patch for CVE-2026-35431, a CVSS 10.0 privilege escalation flaw tied to the Agent ID Administrator role; no active exploitation or PoC details are provided.

    0000040
    78 followersView on X
  • 🌶️ふくらみかけ@fukuramikake
    General

    CVE-2026-35431の 10.0 CRITICAL というのもすごいけどMSがサッサと直してそうだしさほど、って感じか https://nvd.nist.gov/vuln/detail/CVE-2026-35431

    Post summary

    The post references CVE‑2026‑35431 with a 10.0 CRITICAL score, notes a likely quick patch from Microsoft, but offers no exploit or detailed technical information.

    0000060
    529 followersView on X
  • kawn@kawn2020
    General

    #securityupdate #microsoft #定例外 CVE-2026-35431 「…された脆弱性を解決するために、お客様が取るべきアクションはありません」 影響: なりすまし 最大深刻度: 緊急 CVSS:3.1 10.0 / 8.7 悪用可能性 ・一般に公開: No ・悪用: No ・Exploitability assessment:対象外 https://x.com/kawn2020/status/2048693832863334868

    Post summary

    Microsoft issues a security update for CVE‑2026‑35431, indicating it causes impersonation but requires no customer action, with no publicly available exploits or patches disclosed.

    00000116
    85 followersView on X
  • cybersecuritypath@cybrsecpath
    Disclosure

    CVE-2026-35431: Critical SSRF Flaw Hits Microsoft Entra ID https://thecybrdef.com/cve-2026-35431-microsoft-entra-id-ssrf-vulnerability/ #CVE202635431 #MicrosoftEntraID #CyberSecurity

    Post summary

    Microsoft Entra ID has been disclosed as having a critical SSRF flaw, but the post offers limited detail beyond the announcement.

    0000051
    7 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-35431 Server-side request forgery (ssrf) in Microsoft Entra ID Entitlement Management allows an unauthorized attacker to perform spoofing over a network. https://www.cve.org/CVERecord?id=CVE-2026-35431

    Post summary

    A Server‑Side Request Forgery vulnerability (CVE-2026-35431) in Microsoft Entra ID Entitlement Management has been disclosed, allowing unauthorized attackers to spoof network requests.

    00000134
    57.3K followersView on X
  • cybersecuritypath@cybrsecpath
    Disclosure

    CVE-2026-35431: Critical SSRF Flaw Hits Microsoft Entra ID https://thecybrdef.com/cve-2026-35431-microsoft-entra-id-ssrf-vulnerability/ #CVE202635431 #MicrosoftEntraID #CyberSecurity

    Post summary

    The text announces a critical SSRF vulnerability affecting Microsoft Entra ID and links to an external article for more information.

    0000061
    6 followersView on X
  • ‏ᗩTTᗩᑕK@INFJ_100
    Patch

    🚨 ثغرة أمنية "حرجة" تضرب Microsoft Entra ID! تم الكشف عن الثغرة CVE-2026-35431 بتقييم 10/10 (الأخطر تقنياً) 🔹 النوع: SSRF في نظام إدارة الاستحقاق 🔹 الخطر: استغلال ضعف التحقق لتنفيذ طلبات خبيثة "نيابة عن السيرفر" 🔹 التأثير: وصول غير مصرح للموارد الداخلية وتجاوز كامل لضوابط الأمان ⚠️ الإجراء الفوري: الثغرة تتطلب معالجة عاجلة! تأكد من مراجعة تحديثات مايكروسوفت (أبريل 2026) وتطبيق التصحيحات فوراً لحماية بيئة العمل #CyberSecurity #Microsoft #الأمن_السيبراني

    Post summary

    The post announces a critical SSRF vulnerability in Microsoft Entra ID and urges immediate patching, providing specific technical details about the flaw.

    00000425
    205 followersView on X
  • Aakash Rahsi@rahsi_aaka
    General

    CVE-2026-35431 | Microsoft Entra ID Entitlement Management Spoofing Vulnerability https://www.aakashrahsi.online/post/cve-2026-35431 https://t.co/SzacYrTyFZ

    Post summary

    The text merely announces CVE-2026-35431 with a headline and links, but offers no concrete details, exploits, or remediation information.

    0000046
    1 followersView on X
  • WindowsForum@windowsforum
    Disclosure

    🪟 CVE-2026-35431: “high-confidence” Entra spoofing… aka attackers don’t need new exploits, just a better costume. This matters because entitlement abuse scales fast when details are fuzzy. https://windowsforum.com/threads/cve-2026-35431-high-confidence-spoofing-flaw-in-entra-entitlement-management.414950/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #SecurityUpdates #EntraId #SpoofingVulnerability https://t.co/m5bsBnOceF

    Post summary

    The tweet announces the high‑confidence Entra spoofing vulnerability (CVE‑2026‑35431) but does not provide technical details, PoC, exploitation evidence, or mitigation information.

    0000087
    1.1K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftentra_id---

Explore more