CVE-2026-42898
Improper control of generation of code (‘code injection’) in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.
More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42898
