CVE-2026-84003

Summary

Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unauthorized attacker to perform spoofing over a network.

Affected Software

VendorProductVersion RangeStatus
MicrosoftMicrosoft Authentication Library1.0.0 < 5.6.0affected

Weaknesses

  • CWE-294: CWE-294: Authentication Bypass by Capture-replay

References