CVE-2025-49745

Publication date

2025-08-12 17:09:42

Family

microsoft

State

PUBLISHED

Description

Improper neutralization of input during web page generation (cross-site scripting) in Microsoft Dynamics 365 (on-premises) allows an unauthorized attacker to perform spoofing over a network.