AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-70340

HIGH · CVSS 8.1 EPSS 0.58%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Azure CycleCloud is vulnerable due to a missing authorization flaw that enables an authenticated attacker to escalate their privileges within the network. This could lead to unauthorized access and control over resources, posing significant risks to data integrity and confidentiality. Organizations utilizing Azure CycleCloud should prioritize addressing this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-70340
Severity
HIGH
CVSS
8.1
EPSS
0.58%

Original NVD Description

Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.