SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-62895

HIGH · CVSS 8.8 EPSS 0.72%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A permissive cross-domain policy in Azure Arc exposes unspecified products to unauthorized privilege escalation by allowing untrusted domains to interact with the system. This vulnerability can lead to significant security breaches, enabling attackers to gain elevated access over the network. Organizations utilizing Azure Arc should prioritize remediation efforts to mitigate potential exploitation.

CVE
CVE-2026-62895
Severity
HIGH
CVSS
8.8
EPSS
0.72%

Original NVD Description

Permissive cross-domain policy with untrusted domains in Azure Arc allows an unauthorized attacker to elevate privileges over a network.