Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
High

SSRF in Microsoft Dynamics 365 Online msdyn_UCIClientAuth OData endpoint

IdentifiersCVE-2026-32210CWE-918· Server-Side Request Forgery (SSRF)

CVE-2026-32210 is a critical server-side request forgery vulnerability in Microsoft Dynamics 365 Online affecting the msdyn_UCIClientAuth OData endpoint. According to the provided content, the vulnerable functionality accepted attacker-controlled input in parameters including EndpointEnum and TokenAudience. The root cause was insufficient validation of the EndpointEnum parameter, which allowed arbitrary attacker-supplied URLs to be used for backend outbound HTTP requests. When triggered, the Dynamics 365 backend could issue a request to an attacker-controlled server and include the authenticated victim's bearer token in the Authorization header. The provided analysis further states that setting TokenAudience to null could cause issuance of a broader-scoped Power Platform token with audience https://api.powerplatform.com rather than a narrower service-specific token. This enabled theft of a victim-associated token through a single crafted URL delivered to an authenticated Dynamics 365 user. Microsoft classified the issue as SSRF and described the security impact category as spoofing.

Share:
For your environment

Are you exposed to this one?

Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.

ANALYST BRIEF

Impact, mitigation & remediation

What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.

Impact

What an attacker gets, and what they’ve been doing with it.

Successful exploitation could expose an authenticated user's bearer token to an attacker-controlled server, resulting in high confidentiality and integrity impact. Based on the provided content, the stolen token could be used to access Power Platform resources associated with the victim and tenant, including enumerating PowerApps, creating or deleting PowerApps, invoking Copilot Studio copilots, and executing AI workflows. The CVSS v3.1 vector AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N indicates network-based exploitation with low complexity, no attacker privileges required, required user interaction, changed scope, and no direct availability impact.

Mitigation

If you can’t patch tonight, do this now.

Microsoft states no customer mitigation steps are required because the issue has already been fully mitigated in the Dynamics 365 Online cloud service. Prior to service-side remediation, practical exposure would have been reduced by limiting successful phishing or malicious link delivery to authenticated Dynamics 365 users, but the provided advisory says no current customer mitigation action is necessary.

Remediation

Patch, then assume compromise.

Microsoft states the vulnerability was fully remediated server-side in Microsoft Dynamics 365 Online as of April 23, 2026. Because the affected product is an online SaaS service, no customer patching, KB installation, or build update is required according to the provided advisory. The remediation was applied by Microsoft across the hosted service infrastructure.
PUBLIC EXPLOITS

Exploits

No public exploits tracked yet. Mallory keeps watching.

VALID 0 / 0 TOTALView more in app

No public exploit code observed for this vulnerability.

EXPOSURE SURFACE

Affected products & vendors

Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.

VendorProductType
Microsoft CorporationDynamics 365application
Microsoft CorporationDynamics 365 Onlineapplication

Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.

What this page doesn’t show

The version that knows your environment.

This page is what’s public. Mallory adds the parts that aren’t: which of your assets are affected, which adversaries are exploiting it right now, which detections to deploy, and what to do tonight.
Exposure mapping

Query your assets running an affected version, and investigate the blast radius.

Threat actor evidence

Every observed campaign linking this CVE to a named adversary.

Associated malware

Malware families riding this exploit, with evidence and IOCs.

Detection signatures

YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.

Vendor-by-vendor mapping

Cross-references every affected SKU, including bundled OEM variants.

Social activity5

Community discussion across Reddit, Mastodon, and other social sources.