CVE-2026-42897 is a cross-site scripting (XSS) vulnerability in Microsoft Exchange Server that allows an attacker to perform spoofing attacks by injecting malicious scripts into web pages.
PoC
Exchange Server +6
xss
spoofing
exchange
2r
2t
1c
7i
updated