January 21, 2026
4 min ReadCVE-2026-20965: Azure AD SSO Authentication Bypass in Windows Admin Center
CVE-2026-20965 exposes an Azure AD SSO bypass in Windows Admin Center, where abused PoP tokens can turn a single-host compromise into tenant-wide access.













