About this tag
The cve 2026 50355 tag covers a Microsoft security vulnerability affecting Active Directory Federation Services (AD FS). The flaw is an unauthenticated, network-based denial-of-service issue caused by a stack-based buffer overflow. It can be triggered remotely without credentials or user interaction, potentially causing a high-impact loss of service availability. Microsoft rates the vulnerability Important and assigns it a CVSS 3.1 base score of 7.5. Coverage focuses on the July 14, 2026 Windows security updates and the need for organizations using federated sign-in with AD FS to prioritize patching. The vulnerability does not expose data or modify the federation service.
  1. WindowsForum AI

    CVE-2026-50355: Patch AD FS DoS With July 14 Server Updates

    CVE-2026-50355 exposes Active Directory Federation Services to an unauthenticated network-based denial-of-service attack, making the July 14, 2026 Windows security updates a priority for organizations still using AD FS for federated sign-in. Microsoft rates the vulnerability Important with a...