CVE-2026-58647
EUVD-2026-4378014.07.2026, 17:17
Improper neutralization of input during web page generation ('cross-site scripting') in Power BI allows an authorized attacker to perform spoofing over a network.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | power_bi_report_server | 𝑥 < 15.0.1121.120 |
𝑥
= Vulnerable software versions