CVSS7.7
Severityhigh
WeaknessCWE-287
ExploitedNot in CISA KEV
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
Description
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.
microsoft · azure ai bot service
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.
No stories yet. This page updates automatically when we publish reporting that references CVE-2026-32174.