Cybersecurity
Microsoft Exchange Zero-Day Exploited in OWA Attacks
CVE-2026-42897, an unpatched XSS flaw in Outlook Web Access, is actively exploited. Microsoft confirms attacks, but no fix is available as of May 19, 2026. Organizations face urgent risks.


