CRITICALAdvisoryJul 31, 2026
Action required
Immediately scan all Exchange OWA servers for CVE-2026-42897 exploitation. Review OWA access logs for suspicious XSS payloads and unusual mailbox forwarding rules. If vulnerable, isolate affected servers and coordinate with Microsoft for emergency patching.
Affected products
Exchange Outlook Web AccessZimbra email serversMicrosoft
CVE IDs