CVE-2026-32186 is identified as a Microsoft Bing Elevation of Privilege vulnerability, specifically a Server-Side Request Forgery (CWE-918), though specific affected products are not detailed. It carries a CVSS score of 6.5 (Medium), indicating it can be exploited remotely with low attack complexity and no required privileges or user interaction, potentially resulting in low impact to confidentiality and integrity. There is currently no evidence of active exploitation, and it is not listed on the KEV catalog or Hot List. Furthermore, no public exploit code is available, and community attention is minimal with only one mention and no media coverage observed.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:bing:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.