<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Planetary Computer Pro — CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/planetary-computer-pro/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Tue, 26 May 2026 13:54:37 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/planetary-computer-pro/feed.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-41104 - Microsoft Planetary Computer Pro Deserialization Vulnerability</title><link>https://feed.craftedsignal.io/briefs/2026-05-cve-2026-41104/</link><pubDate>Tue, 26 May 2026 13:54:37 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-05-cve-2026-41104/</guid><description>CVE-2026-41104 is a critical vulnerability in Microsoft Planetary Computer Pro that allows an unauthorized attacker to disclose information over a network by deserializing untrusted data.</description><content:encoded><![CDATA[<p>CVE-2026-41104 is a critical vulnerability affecting Microsoft Planetary Computer Pro. This deserialization of untrusted data vulnerability allows an unauthorized attacker to disclose sensitive information over a network. The vulnerability stems from improper handling of serialized data, leading to potential information leakage. Successful exploitation can lead to unauthorized access to sensitive data, impacting the confidentiality of the Planetary Computer Pro environment. Defenders need to patch systems running Microsoft Planetary Computer Pro immediately and monitor for signs of exploitation attempts.</p>
<h2 id="attack-chain">Attack Chain</h2>
<ol>
<li>Attacker crafts a malicious serialized data payload.</li>
<li>The attacker sends the crafted payload to the vulnerable Microsoft Planetary Computer Pro instance over the network.</li>
<li>Planetary Computer Pro processes the data without proper validation, triggering the deserialization vulnerability (CWE-502).</li>
<li>The malicious payload is deserialized, leading to the execution of unintended code or data access.</li>
<li>The attacker gains unauthorized access to sensitive information stored within the Planetary Computer Pro environment.</li>
<li>The attacker retrieves the disclosed information over the network.</li>
</ol>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2026-41104 allows an unauthorized attacker to disclose information over a network. Given the critical severity rating (CVSS 10.0), the potential impact is significant, including unauthorized data access and potential compromise of sensitive information. The vulnerability affects Microsoft Planetary Computer Pro, potentially impacting organizations that rely on this service for planetary data analysis and processing.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Apply the security update provided by Microsoft to patch CVE-2026-41104 in Microsoft Planetary Computer Pro as soon as possible.</li>
<li>Monitor network traffic for suspicious patterns indicative of deserialization attacks targeting Microsoft Planetary Computer Pro.</li>
<li>Implement network segmentation and access controls to limit the potential impact of a successful exploit.</li>
<li>Deploy the Sigma rule <code>Detect CVE-2026-41104 Deserialization Attempt</code> to identify potential exploitation attempts in network traffic.</li>
</ul>
]]></content:encoded><category domain="severity">critical</category><category domain="type">advisory</category><category>cve</category><category>deserialization</category><category>information disclosure</category></item></channel></rss>