CVE-2023-21807: Microsoft Dynamics 365

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability

Affected products

  • Microsoft Dynamics 365: after 9.0, before 9.0.45.11 (fixed in 9.0.45.11); from 9.1, before 9.1.16.20 (fixed in 9.1.16.20)

Published 2023-02-14. Last modified 2026-08-19.