CVE-2021-42063 is a critical server-side request forgery (SSRF) vulnerability residing in Microsoft Exchange Server. An SSRF vulnerability allows an attacker to exploit a server’s functionality to send forged HTTP requests from the server itself. In simpler terms, the attacker can trick the vulnerable server into making requests to arbitrary external URLs.