CVE-2026-26123 | Microsoft Authenticator on iOS/Android improper authorization in handler for custom url scheme
A vulnerability, which was classified as problematic, was found in Microsoft Authenticator on iOS/Android. This affects an unknown part. Executing a manipulation can lead to improper authorization in handler for custom url scheme.
The identification of this vulnerability is CVE-2026-26123. The attack can only be executed locally. There is no exploit available.
It is advisable to implement a patch to correct this issue.