Microsoft Confirms Active Exchange Zero-Day Exploit Targeting On-Premises Servers

May 17, 2026 4 min read

Microsoft and CISA have confirmed active exploitation of the Microsoft Exchange Server zero-day vulnerability CVE-2026-42897. Learn affected versions, emergency mitigation steps, risks, and security recommendations.

swipe up for next