IT

Tracker / CVE-2026-40375

CVE-2026-40375

Medium 6.5

Missing authorization in Dynamics Business Central allows an authorized attacker to disclose information over a network.

Affected products and versions

microsoft dynamics_365_business_central_2024 · 25.1.25900 → …
microsoft dynamics_365_business_central_2025 · 26.0 → 26.0.50788
microsoft dynamics_365_business_central_2025 · 27.0 → 27.0.50789
microsoft dynamics_365_business_central_2026 · 28.0 → 28.0.50938

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References