All findings

CVE-2026-65767 high

Microsoft directly credits Enclave AI on Teams for Android spoofing

MSRC directly credits Enclave AI on CVE-2026-65767, a high-severity Microsoft Teams for Android spoofing vulnerability.

Bug class
Mobile-client spoofing and trust-boundary failure
Affected codebase
Microsoft Teams for Android
Credited system
Enclave AI
Disclosed
August 11, 2026
Attribution
Direct source attribution
Severity
high
Source status: MSRC directly names Enclave AI on the accepted CVE and assigns CVSS 8.8. Enclave's Nice2Meet material supplies campaign context; broader organization-only credits are not folded into this entry.

Summary

CVE-2026-65767 is a high-severity spoofing vulnerability in Microsoft Teams for Android. It is the cleanest first Enclave entry because the affected vendor names Enclave AI directly instead of crediting only the organization.


References


Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.