Our takeNearly 22k Exchange servers are still exposed to CVE-2026-62911, an authentication bypass that lets attackers replay captured creds. If you run on-prem Exchange, patch it now; the US and Germany lead the exposed list.Cyber Resilience desk
Sources (11)
What this means for you — Security leader:22,000 Exchange servers remain exposed to CVE-2026-62911, a confirmed critical authentication bypass. Patch all on-premises Exchange servers immediately and verify with external scanning.
What this means for you — Lean IT orgs:If you run your own Microsoft Exchange server, this critical authentication bypass flaw is still unpatched on thousands of systems worldwide. Update it now or migrate to Microsoft 365.
What this means for you — MSP:Scan client environments for unpatched on-premises Exchange servers; nearly 22k globally remain exposed to CVE-2026-62911. Prioritize patching this critical authentication bypass across all managed estates.
What this means for you — Researcher:Shadowserver daily scans show ~22k Exchange servers still vulnerable to CVE-2026-62911 months after disclosure. US and Germany lead with 6.2k and 5.1k exposed instances.