Tracker / CVE-2026-40375
CVE-2026-40375
Medium 6.5
Missing authorization in Dynamics Business Central allows an authorized attacker to disclose information over a network.
Affected products and versions
| microsoft | dynamics_365_business_central_2024 · 25.1.25900 → … |
|---|---|
| microsoft | dynamics_365_business_central_2025 · 26.0 → 26.0.50788 |
| microsoft | dynamics_365_business_central_2025 · 27.0 → 27.0.50789 |
| microsoft | dynamics_365_business_central_2026 · 28.0 → 28.0.50938 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.