Ir al contenido
CodeAuditAgent

CVE-2026-50684

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

Debilidad

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

Productos afectados

  • microsoft windows_10_1607
  • microsoft windows_10_1809
  • microsoft windows_server_2012
  • microsoft windows_server_2016
  • microsoft windows_server_2019
  • microsoft windows_server_2022
  • microsoft windows_server_2025

Referencias

Encuentra el fallo antes que un atacante.

Inicia sesión con GitHub y ejecuta tu primera auditoría en menos de un minuto. El plan gratuito no requiere tarjeta de crédito.