إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediDisclosure
The tweet announces a critical SSRF vulnerability (CVE‑2026‑35431) in Microsoft Entra ID, detailing its nature and severity but offering no PoC, exploit, or mitigation information.
Upwind Security MDR[verified]@UpwindMDRPatch
Microsoft has disclosed a spoofing vulnerability (CVE-2026-35431) in Entra ID Entitlement Management that allows SSRF-style attacks and has already provided remediation.
Orizon[verified]@OrizonCyberPatch
A critical SSRF vulnerability (CVE‑2026‑35431) in Microsoft Entra ID Entitlement Management has been disclosed; a patch is now available.
Aaron Schnieder[verified]@schniedsPatch
The post announces that Microsoft has supplied a patch for CVE-2026-35431, a CVSS 10.0 privilege escalation flaw tied to the Agent ID Administrator role; no active exploitation or PoC details are provided.
ᗩTTᗩᑕK[verified]@INFJ_100Patch
The post announces a critical SSRF vulnerability in Microsoft Entra ID and urges immediate patching, providing specific technical details about the flaw.
WindowsForum[verified]@windowsforumDisclosure
The tweet announces the high‑confidence Entra spoofing vulnerability (CVE‑2026‑35431) but does not provide technical details, PoC, exploitation evidence, or mitigation information.
kawn@kawn2020Disclosure
Microsoft announces the release of a security update for CVE-2026-35431, the Entra ID Entitlement Management Spoofing Vulnerability, and provides a link to the official Microsoft vulnerability guide.
selva@SelvaKtm2Disclosure
CVE-2026-35431 is a newly disclosed critical SSRF flaw impacting Microsoft Entra ID; detailed technical information is provided, but no PoC, exploit, or patch is mentioned.