OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-70009

CRITICAL · CVSS 9.3 EPSS 0.53%

Source: NVD + CISA KEV + EPSS · Published 2026-09-17 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

A path traversal vulnerability in Azure Arc enables unauthorized attackers to manipulate file paths, potentially leading to privilege escalation over a network. This critical flaw poses significant risks to systems utilizing Azure Arc, making it essential for organizations leveraging this platform to prioritize immediate remediation efforts. Security teams should assess their environments for exposure and implement necessary patches to mitigate the risk.

CVE
CVE-2026-70009
Severity
CRITICAL
CVSS
9.3
EPSS
0.53%

Original NVD Description

Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Arc allows an unauthorized attacker to elevate privileges over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)